« Back to list

Wphowto

Wphowto Flowplayer Video Player: vulnerabilities and CVEs

Wphowto Flowplayer Video Player has 2 published vulnerabilities, 1 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs2
Last 12 months1
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2026-49773Medium (6.5)0.22%—Jun 15, 2026
Subscriber Cross Site Scripting (XSS) in FV Flowplayer Video Player < 7.5.51.7212 versions.
CVE-2022-3984Medium (5.4)0.48%—Dec 19, 2022
The Flowplayer Video Player WordPress plugin before 1.0.5 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor…

Other products by Wphowto