Pricing
Case studies
Login
Start trial
FV Flowplayer Video Player
FolioVision
Developer
7.5.49.7212
Latest version
20,000
Installations
No date
Last updated
WordPress Plugin
No VDP
See changelog
Claim ownership
Report vulnerability
Vulnerabilities
Security Contributors
Vulnerability history
0 present
20 patched
11 Mitigation rules
Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via FancyBox JavaScript Library
<= 7.5.47.7212
03/12/2024
Authenticated (Subscriber+) SQL Injection via exclude Parameter vulnerability
<= 7.5.46.7212
19/07/2024
Cross Site Scripting (XSS) vulnerability
<= 7.5.45.7212
27/05/2024
Server Side Request Forgery (SSRF) vulnerability
<= 7.5.43.7212
22/04/2024
Unvalidated Redirects and Forwards vulnerability
<= 7.5.44.7212
11/04/2024
Reflected Cross Site Scripting (XSS) vulnerability
<= 7.5.41.7212
26/03/2024
Cross Site Scripting (XSS) vulnerability
<= 7.5.41.7212
16/03/2024
Insufficient Input Validation to Unauthenticated Stored Cross-Site Scripting and Arbitrary Usermeta Update vulnerability
<= 7.5.37.7212
25/08/2023
Reflected Cross Site Scripting (XSS) vulnerability
<= 7.5.32.7212
03/05/2023
Cross Site Request Forgery (CSRF)
<= 7.5.30.7212
02/02/2023
Authenticated Persistent Cross-Site Scripting (XSS) vulnerability
<= 7.5.18.727
04/04/2022
SQL Injection (SQLi) vulnerability
<= 7.5.15.727
18/03/2022
Reflected Cross-Site Scripting (XSS) vulnerability
7.5.0.727-7.5.2.727
05/10/2021
Authenticated Stored Cross-Site Scripting (XSS) vulnerability
<= 7.4.37.727
15/01/2021
SQL Injection (SQLi) vulnerability
<= 7.3.18.727
13/07/2019
CSV Export vulnerability
<= 7.3.14.727
21/05/2019
SQL Injection (SQLi) vulnerability
<= 7.3.14.727
21/05/2019
Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability
<= 7.3.13.727
21/05/2019
Authenticated Cross-Site Scripting (XSS) vulnerability
<= 7.2.0.727
03/10/2018
Cross-Site Scripting (XSS) vulnerability
<= 6.6.4
09/09/2018