Xakuro develops a focused line of security and slider products where the durable signal centers on web-application input-handling issues, specifically cross-site scripting vulnerabilities arising from improper neutralization of user-supplied data in page generation. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Xakuro over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-18541MEDIUM The xo-security plugin before 1.5.3 for WordPress has XSS. | Aug 16, 2019 | 6.1 | 20 | NO | NO |
CVE-2022-32280MEDIUM Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerability in Xakuro's XO Slider plugin <= 3.3.2 at WordPress. | Jun 15, 2022 | 5.4 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Xakuro.
Media articles that mention a CVE ID that affects a product developed by Xakuro — matched by CVE ID, not by vendor name.