Simple Side Tab
Simple Side Tab has one disclosed vulnerability in the WordSec catalog, all reported in 2024; it is fixed as of September 2026. Their average CVSS score is 4.4, and the most serious one scores 4.4 out of 10.
The most common weakness is Cross-Site Scripting, behind 1 of the records (100%).
The one issue recorded for Simple Side Tab has a vendor fix available, so running the current release closes it.
All of these findings were reported by Krugov Artyom. Simple Side Tab is installed on roughly 10,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.0.4.
CVE-2024-11183Simple Side Tab <= 2.1.14 - Authenticated (Administrator+) Stored Cross-Site Scripting
Read the full analysisVulnerability Records

Simple Side Tab
Author
srumery
Add a “Global Call To Action” on your website. Simple Side Tab adds a vertical tab to the left or right side of the browser window that links to any page. The tab stays in place as your visitor scrolls down the page so it’s always visible and ready for action. Works great on Mobile too. Need an effective way to highlight a conversion page? This plugin will help. New feature Filter added to modify output of tab text (see FAQ) Filter added so the tab display can be turned on and off conditionally (see FAQ) It’s easy to use and simple to set up. From one simple settings screen, you can: Set the text for the tab Choose fonts – includes 7 standard screen fonts Set the URL your tab links to, internal or external Assign the tab to the left or right side of browser window Change vertical position of your tab Unlimited colors for tab elements All CSS, no graphics Development Code: https://github.com/rumspeed/simple-side-tab Wiki: https://github.com/rumspeed/simple-side-tab/wiki
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C