Pricing
Case studies
Login
Start trial
tagDiv Composer
N/A
Developer
N/A
Latest version
N/A
Installations
N/A
Last updated
WordPress Plugin
No VDP
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
19 patched
9 Mitigation rules
Reflected Cross Site Scripting (XSS) vulnerability
<= 5.4.2
10/03/2026
Reflected Cross-Site Scripting via envato_code[] vulnerability
<= 5.0
18/02/2026
Cross Site Scripting (XSS) vulnerability
<= 5.4.2
08/01/2026
Reflected Cross-Site Scripting via 'data' vulnerability
<= 5.3
31/12/2025
Cross Site Scripting (XSS) vulnerability
<= 5.4.1
16/10/2025
Cross Site Scripting (XSS) vulnerability
<= 5.4.1
09/10/2025
Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Shortcodes vulnerability
<= 5.4
01/05/2025
Unauthenticated Arbitrary PHP Object Instantiation vulnerability
<= 5.3
03/04/2025
Cross-Site Request Forgery to Stored Cross-Site Scripting vulnerability
<= 5.3
27/03/2025
Reflected Cross-Site Scripting via 'account_id' and 'account_username' vulnerability
<= 5.3
27/03/2025
Reflected Cross-Site Scripting via envato_code[] vulnerability
<= 5.0
02/09/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via button Shortcode vulnerability
<= 4.8
04/06/2024
Authenticated Stored Cross-Site Scripting via Attachment Meta vulnerability
<= 4.8
18/04/2024
Authenticated Local File Inclusion via Shortcode vulnerability
<= 4.8
18/04/2024
Admin+ Stored XSS vulnerability
< 4.2
17/08/2023
Unauthenticated Stored XSS vulnerability
< 4.2
17/08/2023
CSRF to XSS vulnerability
< 4.4
25/07/2023
Reflected Cross-site Scripting vulnerability
< 4.0
02/05/2023
Unauthenticated Account Takeover vulnerability
< 3.5
24/10/2022