easyBug (Patchstack Alliance)
3 credited records · 0 in the last 12 months · 0 in CISA KEV
Names are free text from CNA records; the same person may appear under different spellings. Write to us for corrections.
Credited records
Researchers| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2023-29096No exploit | WordPress Contact Form to DB by BestWebSoft Plugin <= 1.7.0 is vulnerable to SQL Injectionbestwebsoft · contact form to db · CWE-89 | High8.8 | — | 0.7% | Dec 20, 2023 |
35Monitor | CVE-2023-29238No exploit | WordPress Whydonate – FREE Donate button Plugin <= 3.12.15 is vulnerable to Cross Site Request Forgery (CSRF)whydonate · wp whydonate · CWE-352 | High8.8 | — | 0.3% | Nov 12, 2023 |
19Monitor | CVE-2023-28934No exploit | WordPress WP Full Stripe Free Plugin <= 1.6.1 is vulnerable to Cross Site Scripting (XSS)paymentsplugin · wp full stripe free · CWE-79 | Medium4.8 | — | 0.4% | Aug 8, 2023 |
- CVE-2023-2909635Monitor
WordPress Contact Form to DB by BestWebSoft Plugin <= 1.7.0 is vulnerable to SQL Injection
HighCVSS 8.8No exploitEPSS 1%bestwebsoft · contact form to dbDec 20, 2023
- CVE-2023-2923835Monitor
WordPress Whydonate – FREE Donate button Plugin <= 3.12.15 is vulnerable to Cross Site Request Forgery (CSRF)
HighCVSS 8.8No exploitEPSS 0%whydonate · wp whydonateNov 12, 2023
- CVE-2023-2893419Monitor
WordPress WP Full Stripe Free Plugin <= 1.6.1 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 4.8No exploitEPSS 0%paymentsplugin · wp full stripe freeAug 8, 2023