Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Wpdarko

First CVE: Mar 18, 2021Active for: 5 yearsTotal CVEs: 16
7.2
VTI Score
Low

Wpdarko develops a focused suite of WordPress plugins including Team Members, Responsive Pricing Table, Responsive Tabs, Top Bar, and Grid Shortcodes that extend content presentation and layout capabilities for website administrators. The vendor's vulnerability profile centers on cross-site scripting weaknesses arising from improper input neutralization in web page generation, a common exposure class for plugin-based extensions to WordPress that handle user-supplied content or configuration. Current severity and exploitation metrics are shown alongside this summary.

FAUCET AI Generated
16
Total CVEs
More Total CVEs than 95% of tracked vendors
0.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
5.3
Avg CVSS Score
Higher Avg CVSS Score than 16% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Wpdarko over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 18, 2021
5 years ago
Most Recent CVE
Jul 30, 2024
724 days ago

Products(5 total)

Top CVEs

Signals from CVEs in this vendor scope (16 CVEs).

16 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2024-4096MEDIUM
The Responsive Tabs WordPress plugin through 4.0.8 does not sanitise and escape some of its Tab settings, which could allow high privilege users such as Contributors and above to p
Jul 30, 20245.920NONO
CVE-2022-46855MEDIUM
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WP Darko Responsive Pricing Table plugin <= 5.1.6 versions.
Mar 28, 20235.420NONO
CVE-2024-38670MEDIUM
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Team Members allows Stored XSS.This issue affects Team Members: from n/
Jul 20, 20246.519NONO
CVE-2024-1331MEDIUM
The Team Members WordPress plugin before 5.3.2 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed
Mar 18, 20246.119NONO
CVE-2022-3936MEDIUM
The Team Members WordPress plugin before 5.2.1 does not sanitize and escapes some of its settings, which could allow high-privilege users such as editors to perform Stored Cross-Si
Jan 2, 20234.819NONO
CVE-2022-2629MEDIUM
The Top Bar WordPress plugin before 3.0.4 does not sanitise and escape some of its settings before outputting them in frontend pages, which could allow high privilege users such as
Oct 10, 20224.819NONO
CVE-2021-24128MEDIUM
Unvalidated input and lack of output encoding in the Team Members WordPress plugin, versions before 5.0.4, lead to Cross-site scripting vulnerabilities allowing medium-privileged a
Mar 18, 20215.419NONO
CVE-2023-45635MEDIUM
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in WP Darko Responsive Tabs allows Code Injection.This issue affects Responsive Tabs: fr
Jun 4, 20245.418NONO
CVE-2024-1846MEDIUM
The Responsive Tabs WordPress plugin before 4.0.7 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is em
Apr 15, 20245.418NONO
CVE-2024-31928MEDIUM
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Darko Top Bar allows Stored XSS.This issue affects Top Bar: from n/a throug
Apr 11, 20245.918NONO
View all 16 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products16 CVEs
100%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
Medium
Attack Vector
Local0 (0.0%)
Network16 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low16 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None1 (6.3%)
Unknown0 (0.0%)
Required15 (93.8%)
Privileges Required
Low7 (43.8%)
High8 (50.0%)
None1 (6.3%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (16 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Wpdarko.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Wpdarko — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Wpdarko's Products

View all 2 CNAs →

Top CWEs