Filtered by vendor Sumo
Subscriptions
Total
7 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2023-23688 | 1 Sumo | 1 Social Share Boost | 2025-01-09 | 6.5 Medium |
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Sumo Social Share Boost plugin <= 4.4 versions. | ||||
CVE-2023-25044 | 1 Sumo | 1 Social Share Boost | 2024-11-21 | 5.9 Medium |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Sumo Social Share Boost plugin <= 4.4 versions. | ||||
CVE-2023-25033 | 1 Sumo | 1 Social Share Boost | 2024-11-21 | 5.4 Medium |
Cross-Site Request Forgery (CSRF) vulnerability in Sumo Social Share Boost plugin <= 4.5 versions. | ||||
CVE-2022-4323 | 1 Sumo | 1 Google Analyticator | 2024-11-21 | 7.2 High |
The Analyticator WordPress plugin before 6.5.6 unserializes user input provided via the settings, which could allow high privilege users such as admin to perform PHP Object Injection when a suitable gadget is present | ||||
CVE-2022-3425 | 1 Sumo | 1 Google Analyticator | 2024-11-21 | 7.2 High |
The Analyticator WordPress plugin before 6.5.6 unserializes user input provided via the settings, which could allow high-privilege users such as admin to perform PHP Object Injection when a suitable gadget is present. | ||||
CVE-2015-4697 | 1 Sumo | 1 Google Analyticator | 2024-11-21 | N/A |
Cross-site request forgery (CSRF) vulnerability in Google Analyticator Wordpress Plugin before 6.4.9.3 rev @1183563. | ||||
CVE-2009-5158 | 1 Sumo | 1 Google Analyticator | 2024-11-21 | N/A |
The google-analyticator plugin before 5.2.1 for WordPress has insufficient HTML sanitization for Google Analytics API text. |
Page 1 of 1.