Designchemical develops web-facing plugins and widgets, including a jQuery accordion menu and social network tabs component, where vulnerabilities cluster around information-disclosure and cross-site scripting flaws typical of client-side web components. Treat this as a compact vendor profile; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Designchemical over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-20555CRITICAL The Design Chemical Social Network Tabs plugin 1.7.1 for WordPress allows remote attackers to discover Twitter access_token, access_token_secret, consumer_key, and consumer_secret | Mar 21, 2019 | 9.8 | 36 | NO | NO |
CVE-2023-4890MEDIUM The JQuery Accordion Menu Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'dcwp-jquery-accordion' shortcode in versions up to, and including, 3.1.2 due | Sep 12, 2023 | 5.4 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Designchemical.
Media articles that mention a CVE ID that affects a product developed by Designchemical — matched by CVE ID, not by vendor name.