Filtered by vendor Merkulove Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-49444 2 Merkulove, Wordpress 2 Reformer For Elementor, Wordpress 2025-06-26 10 Critical
Unrestricted Upload of File with Dangerous Type vulnerability in merkulove Reformer for Elementor allows Upload a Web Shell to a Web Server. This issue affects Reformer for Elementor: from n/a through 1.0.5.
CVE-2024-50445 1 Merkulove 1 Selection Lite 2024-11-08 6.5 Medium
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Merkulove Selection Lite allows Stored XSS.This issue affects Selection Lite: from n/a through 1.13.
CVE-2024-43147 2 Merkulove, Wordpress 2 Selection Lite, Wordpress 2024-08-13 6.5 Medium
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Merkulove Selection Lite allows Stored XSS.This issue affects Selection Lite: from n/a through 1.11.