WordPress security by component
Content Views
Plugin description
Content Views is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Sep 06, 2025; the highest CVE/CNA score is 6.4.
Plugin slug:
content-views-query-and-display-post-pageLatest vulnerability
CVE-2025-8722: Content Views: Cross-site scripting
Content Views is affected by cross-site scripting. Exploitation requires at least contributor-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
| Safe version |
|
||
|---|---|---|---|
| Sep 06, 2025 |
CVE-2025-8722
Content Views: Cross-site scripting
Content Views is affected by cross-site scripting. Exploitation requires at least contributor-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.4
NVDPending
|
| May 14, 2024 |
CVE-2024-4446
Content Views – Post Grid & Filter, Recent Posts, Category Posts, & More (Gutenberg Blocks and Shortcode): Cross-site scripting
Content Views – Post Grid & Filter, Recent Posts, Category Posts, & More (Gutenberg Blocks and Shortcode) is affected by cross-site scripting. Exploitation requires at least contributor-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
|
See mitigation notes |
CVE6.4
NVDPending
|