Known vulnerabilities in WordPress Popular Posts
Vendor:
Hector Cabrera
Software:
WordPress Popular Posts
Software CPE:
cpe:2.3:a:hcabrera:wordpress-popular-posts:*:*:*:*:*:wordpress:*:*
Total vulnerabilities:
4
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
7.4.0
7.3.8
7.3.7
7.3.6
7.3.5
7.3.4
7.3.3
7.3.2
7.3.1
7.3.0
7.2.0
7.1.0
7.0.1
7.0.0
6.4.2
6.4.1
6.4.0
6.3.4
6.3.3
6.3.2
6.3.1
6.3.0
6.2.1
6.2.0
6.1.4
6.1.3
6.1.2
6.1.1
6.1.0
6.0.5
6.0.4
6.0.3
6.0.2
6.0.1
6.0.0
5.5.1
5.5.0
5.4.2
5.4.1
5.4.0
5.3.6
5.3.5
5.3.4
5.3.3
5.3.2
5.3.1
5.3.0
4.0.7
3.1.2
3.0.4
2.3.6
2.3.5
2.3.4
2.3.3
2.3.2
2.3.1
2.3.0
2.2.1
2.2.0
2.1.6
2.1.5
2.1.4
2.1.3
2.1.2
2.1.1
2.1.0
2.0.3
2.0.2
2.0.1
2.0.0
1.5.2
1.5.1
1.5.0
1.4.6
1.4.5
1.4.4
1.4.3
1.4.2
1.4.1
1.4.0
1.3.2
1.3.1
1.3.0
1.3
1.2.0
1.2
1.1.0
1.1
1.0.0
1.0
5.2.4
5.2.3
5.2.2
5.2.1
5.2.0
5.1.0
5.0.2
5.0.1
5.0.0
4.2.2
4.2.1
4.2.0
4.1.2
4.1.1
4.1.0
4.0.9
4.0.8
4.0.6
4.0.5
4.0.3
4.0.2
4.0.13
4.0.12
4.0.11
4.0.10
4.0.1
4.0.0
3.3.4
3.3.3
3.3.2
3.3.1
3.3.0
3.2.3
3.2.2
3.2.1
3.2.0
3.1.1
3.1.0
3.0.3
3.0.2
3.0.1
3.0.0
2.3.7
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU69414 - External Initialization of Trusted Variables or Data Stores CVE-2022-43468 |
CWE-454 | Medium | 6.1.0 | 18.11.2022 |
SB2022111813 |
||
| #VU58267 - Unrestricted Upload of File with Dangerous Type CVE-2021-42362 |
CWE-434 | Medium | 5.3.3 | 19.11.2021 |
SB2021111916 |
||
| #VU54522 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
CWE-79 | Low | 5.3.4 | 04.07.2021 |
SB2021070407 |
||
| #VU54320 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2021-20746 |
CWE-79 | Low | 5.3.3 | 23.06.2021 |
SB2021062304 |