noorsplugin records
7 published records for vendor noorsplugin.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 28.6%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')5
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-532 Insertion of Sensitive Information into Log File1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2024-49627No exploit | WordPress WordPress Image SEO plugin <= 1.1.4 - Cross Site Request Forgery (CSRF) vulnerabilitynoorsplugin · wordpress image seo · CWE-352 | High8.8 | — | 0.2% | Oct 20, 2024 |
30Monitor | CVE-2023-52143No exploit | WordPress WP Stripe Checkout Plugin <= 1.2.2.37 is vulnerable to Sensitive Data Exposurenoorsplugin · wp stripe checkout · CWE-532 | High7.5 | — | 0.5% | Jan 5, 2024 |
21Monitor | CVE-2022-3937No exploit | Easy Video Player < 1.2.2.3 - Contributor+ Stored XSSnoorsplugin · easy video player · CWE-79 | Medium5.4 | — | 0.5% | Dec 19, 2022 |
21Monitor | CVE-2022-3987No exploit | Responsive Lightbox2 < 1.0.4 - Contributor+ Stored XSSnoorsplugin · responsive lightbox2 · CWE-79 | Medium5.4 | — | 0.5% | Dec 19, 2022 |
21Monitor | CVE-2022-3983No exploit | Checkout for PayPal < 1.0.14 - Contributor+ Stored XSSnoorsplugin · checkout for paypal · CWE-79 | Medium5.4 | — | 0.5% | Dec 19, 2022 |
21Monitor | CVE-2022-3986No exploit | WP Stripe Checkout < 1.2.2.21 - Contributor+ Stored XSSnoorsplugin · wp stripe checkout · CWE-79 | Medium5.4 | — | 0.5% | Dec 19, 2022 |
21Monitor | CVE-2023-51689No exploit | WordPress Easy Video Player Plugin <= 1.2.2.10 is vulnerable to Cross Site Scripting (XSS)noorsplugin · easy video player · CWE-79 | Medium5.4 | — | 0.3% | Feb 1, 2024 |
- CVE-2024-4962735Monitor
WordPress WordPress Image SEO plugin <= 1.1.4 - Cross Site Request Forgery (CSRF) vulnerability
HighCVSS 8.8No exploitEPSS 0%noorsplugin · wordpress image seoOct 20, 2024
- CVE-2023-5214330Monitor
WordPress WP Stripe Checkout Plugin <= 1.2.2.37 is vulnerable to Sensitive Data Exposure
HighCVSS 7.5No exploitEPSS 1%noorsplugin · wp stripe checkoutJan 5, 2024
- CVE-2022-393721Monitor
Easy Video Player < 1.2.2.3 - Contributor+ Stored XSS
MediumCVSS 5.4No exploitEPSS 1%noorsplugin · easy video playerDec 19, 2022
- CVE-2022-398721Monitor
Responsive Lightbox2 < 1.0.4 - Contributor+ Stored XSS
MediumCVSS 5.4No exploitEPSS 0%noorsplugin · responsive lightbox2Dec 19, 2022
- CVE-2022-398321Monitor
Checkout for PayPal < 1.0.14 - Contributor+ Stored XSS
MediumCVSS 5.4No exploitEPSS 0%noorsplugin · checkout for paypalDec 19, 2022
- CVE-2022-398621Monitor
WP Stripe Checkout < 1.2.2.21 - Contributor+ Stored XSS
MediumCVSS 5.4No exploitEPSS 0%noorsplugin · wp stripe checkoutDec 19, 2022
- CVE-2023-5168921Monitor
WordPress Easy Video Player Plugin <= 1.2.2.10 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 5.4No exploitEPSS 0%noorsplugin · easy video playerFeb 1, 2024