Vulnerabilities in TagDiv

23 results
CVE-2022-3477CRITICALtagDiv Composer < 3.5 - Unauthenticated Account TakeoverEPSS 3.5%CVE-2024-3813HIGHtagDiv Composer <= 4.8 - Authenticated (Contributor+) Local File Inclusion via ShortcodeEPSS 0.7%CVE-2024-13645CRITICALTagDiv Composer <= 5.3 - Unauthenticated Arbitrary PHP Object InstantiationEPSS 0.6%CVE-2023-3416HIGHtagDiv Opt-In Builder <= 1.4.4 - Authenticated (Admin+) SQL InjectionEPSS 0.6%CVE-2023-3419HIGHtagDiv Opt-In Builder <= 1.4.4 - Authenticated (Admin+) SQL InjectionEPSS 0.6%CVE-2024-3886MEDIUMtagDiv Composer <= 5.0 - Reflected Cross-Site Scripting via envato_code[]EPSS 0.4%CVE-2024-5212MEDIUMtagDiv Composer <= 5.0 - Reflected Cross-Site Scripting via envato_code[]EPSS 0.4%CVE-2025-1705MEDIUMtagDiv Composer <= 5.3 - Cross-Site Request Forgery to Stored Cross-Site ScriptingEPSS 0.3%CVE-2025-2890MEDIUMtagDiv Opt-In Builder <= 1.7 - Authenticated (Subscriber+) SQL Injection via subscriptionCouponId ParameterEPSS 0.3%CVE-2024-3888MEDIUMtagDiv Composer <= 4.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via button ShortcodeEPSS 0.3%CVE-2024-3814MEDIUMtagDiv Composer <= 4.8 - Authenticated (Author+) Stored Cross-Site Scripting via Attachment MetaEPSS 0.3%CVE-2025-2806MEDIUMtagDiv Composer <= 5.3 - Reflected Cross-Site Scripting via 'data'EPSS 0.3%CVE-2025-3510MEDIUMtagDiv Composer <= 5.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple ShortcodesEPSS 0.2%CVE-2025-2804MEDIUMtagDiv Composer <= 5.3 - Reflected Cross-Site Scripting via 'account_id' and 'account_username'EPSS 0.2%CVE-2025-50005MEDIUMWordPress tagDiv Composer plugin <= 5.4.2 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2023-39166HIGHWordPress tagDiv Composer Plugin < 4.4 is vulnerable to Cross Site Request Forgery (CSRF)EPSS 0.2%CVE-2025-53222HIGHWordPress tagDiv Opt-In Builder plugin <= 1.7.3 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-62031HIGHWordPress tagDiv Composer plugin <= 5.4.1 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2026-39712MEDIUMWordPress tagDiv Composer plugin <= 5.4.3 - Arbitrary Shortcode Execution vulnerabilityEPSS 0.2%CVE-2025-62030MEDIUMWordPress tagDiv Composer plugin <= 5.4.1 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%