Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 18 Mar 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-79 | |
| Metrics |
cvssV3_1
|
Wed, 18 Mar 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Berkux
Berkux get Use Apis Wordpress Wordpress wordpress |
|
| Vendors & Products |
Berkux
Berkux get Use Apis Wordpress Wordpress wordpress |
Wed, 18 Mar 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Get Use APIs WordPress plugin before 2.0.10 executes imported JSON, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks under certain server configurations. | |
| Title | Get Use APIs < 2.0.10 - Contributor+ Stored XSS | |
| References |
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2026-03-18T13:33:20.817Z
Reserved: 2025-12-30T13:51:48.843Z
Link: CVE-2025-15363
Updated: 2026-03-18T13:30:33.589Z
Status : Deferred
Published: 2026-03-18T07:16:21.187
Modified: 2026-04-15T15:05:47.827
Link: CVE-2025-15363
No data.
OpenCVE Enrichment
Updated: 2026-03-24T10:59:16Z