Filtered by vendor Purethemes Subscriptions
Filtered by product Workscout Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-67959 2 Purethemes, Wordpress 2 Workscout, Wordpress 2026-01-23 N/A
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in purethemes WorkScout workscout allows Reflected XSS.This issue affects WorkScout: from n/a through <= 4.1.07.
CVE-2021-24246 1 Purethemes 2 Workscout, Workscout Core 2024-11-21 5.4 Medium
The Workscout Core WordPress plugin before 1.3.4, used by the WorkScout Theme did not sanitise the chat messages sent via the workscout_send_message_chat AJAX action, leading to Stored Cross-Site Scripting and Cross-Frame Scripting issues