bootstrapped records
17 published records for vendor bootstrapped.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')14
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-284 Improper Access Control1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
17 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2024-1206No exploit | WP Recipe Maker <= 9.1.2 - Missing Authorization to Authenticated (Subscriber+) SQL Injectonbootstrapped · wp recipe maker · CWE-89 | High8.8 | — | 0.7% | Feb 28, 2024 |
24Monitor | CVE-2023-6970Proof of concept | WP Recipe Maker <= 9.1.0 - Reflected Cross-Site Scripting via Refererbootstrapped · wp recipe maker · CWE-79 | Medium6.1 | — | 0.7% | Jan 18, 2024 |
21Monitor | CVE-2019-15836No exploit | The wp-ultimate-recipe plugin before 3.12.7 for WordPress has stored XSS.bootstrapped · wp ultimate recipe · CWE-79 | Medium5.4 | — | 0.8% | Aug 30, 2019 |
21Monitor | CVE-2023-0375No exploit | Easy Affiliate Links < 3.7.1 - Contributor+ Stored XSSbootstrapped · easy affiliate links · CWE-79 | Medium5.4 | — | 0.7% | Feb 21, 2023 |
21Monitor | CVE-2021-24635No exploit | Visual Link Preview < 2.2.3 - Unauthorised AJAX Callsbootstrapped · visual link preview · CWE-284 | Medium5.4 | — | 0.6% | Sep 20, 2021 |
21Monitor | CVE-2021-24933No exploit | Dynamic Widgets <= 1.5.16 - Reflected Cross-Site Scriptingbootstrapped · dynamic widgets · CWE-79 | Medium5.4 | — | 0.6% | Feb 28, 2022 |
21Monitor | CVE-2024-0381No exploit | WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'tag'bootstrapped · wp recipe maker · CWE-79 | Medium5.4 | — | 0.6% | Jan 18, 2024 |
21Monitor | CVE-2024-0384No exploit | WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Recipe Notesbootstrapped · wp recipe maker · CWE-79 | Medium5.4 | — | 0.6% | Feb 5, 2024 |
21Monitor | CVE-2024-0382No exploit | WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via header_tagbootstrapped · wp recipe maker · CWE-79 | Medium5.4 | — | 0.6% | Feb 5, 2024 |
21Monitor | CVE-2022-4468No exploit | WP Recipe Maker < 8.6.1 - Contributor+ Stored XSSbootstrapped · wp recipe maker · CWE-79 | Medium5.4 | — | 0.5% | Jan 9, 2023 |
21Monitor | CVE-2024-0255No exploit | WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via icon_colorbootstrapped · wp recipe maker · CWE-79 | Medium5.4 | — | 0.5% | Feb 5, 2024 |
21Monitor | CVE-2024-0383No exploit | WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'group_tag'bootstrapped · wp recipe maker · CWE-79 | Medium5.4 | — | 0.4% | Jun 19, 2024 |
21Monitor | CVE-2024-9650No exploit | WP Recipe Maker <= 9.6.1 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via 'tooltip'bootstrapped · wp recipe maker · CWE-79 | Medium5.4 | — | 0.4% | Oct 24, 2024 |
21Monitor | CVE-2023-6958No exploit | WP Recipe Maker <= 9.1.0 - Authenticated(Contributor+) Stored Cross-Site Scripting via Shortcodebootstrapped · wp recipe maker · CWE-79 | Medium5.4 | — | 0.3% | Jan 18, 2024 |
21Monitor | CVE-2024-3490No exploit | WP Recipe Maker <= 9.3.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via wprm-recipe-roundup-item Shortcodebootstrapped · wp recipe maker · CWE-79 | Medium5.4 | — | 0.3% | May 2, 2024 |
19Monitor | CVE-2024-1571No exploit | WP Recipe Maker <= 9.2.1 - Authenticated Stored Cross-Site Scripting via Video Embedbootstrapped · wp recipe maker · CWE-79 | Medium4.8 | — | 0.4% | Apr 9, 2024 |
17Monitor | CVE-2024-0380No exploit | WP Recipe Maker <= 9.1.0 - Directory Traversalbootstrapped · wp recipe maker · CWE-22 | Medium4.3 | — | 0.8% | Feb 5, 2024 |
- CVE-2024-120635Monitor
WP Recipe Maker <= 9.1.2 - Missing Authorization to Authenticated (Subscriber+) SQL Injecton
HighCVSS 8.8No exploitEPSS 1%bootstrapped · wp recipe makerFeb 28, 2024
- CVE-2023-697024Monitor
WP Recipe Maker <= 9.1.0 - Reflected Cross-Site Scripting via Referer
MediumCVSS 6.1Proof of conceptEPSS 1%bootstrapped · wp recipe makerJan 18, 2024
- CVE-2019-1583621Monitor
The wp-ultimate-recipe plugin before 3.12.7 for WordPress has stored XSS.
MediumCVSS 5.4No exploitEPSS 1%bootstrapped · wp ultimate recipeAug 30, 2019
- CVE-2023-037521Monitor
Easy Affiliate Links < 3.7.1 - Contributor+ Stored XSS
MediumCVSS 5.4No exploitEPSS 1%bootstrapped · easy affiliate linksFeb 21, 2023
- CVE-2021-2463521Monitor
Visual Link Preview < 2.2.3 - Unauthorised AJAX Calls
MediumCVSS 5.4No exploitEPSS 1%bootstrapped · visual link previewSep 20, 2021
- CVE-2021-2493321Monitor
Dynamic Widgets <= 1.5.16 - Reflected Cross-Site Scripting
MediumCVSS 5.4No exploitEPSS 1%bootstrapped · dynamic widgetsFeb 28, 2022
- CVE-2024-038121Monitor
WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'tag'
MediumCVSS 5.4No exploitEPSS 1%bootstrapped · wp recipe makerJan 18, 2024
- CVE-2024-038421Monitor
WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Recipe Notes
MediumCVSS 5.4No exploitEPSS 1%bootstrapped · wp recipe makerFeb 5, 2024
- CVE-2024-038221Monitor
WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via header_tag
MediumCVSS 5.4No exploitEPSS 1%bootstrapped · wp recipe makerFeb 5, 2024
- CVE-2022-446821Monitor
WP Recipe Maker < 8.6.1 - Contributor+ Stored XSS
MediumCVSS 5.4No exploitEPSS 1%bootstrapped · wp recipe makerJan 9, 2023
- CVE-2024-025521Monitor
WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via icon_color
MediumCVSS 5.4No exploitEPSS 1%bootstrapped · wp recipe makerFeb 5, 2024
- CVE-2024-038321Monitor
WP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'group_tag'
MediumCVSS 5.4No exploitEPSS 0%bootstrapped · wp recipe makerJun 19, 2024
- CVE-2024-965021Monitor
WP Recipe Maker <= 9.6.1 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via 'tooltip'
MediumCVSS 5.4No exploitEPSS 0%bootstrapped · wp recipe makerOct 24, 2024
- CVE-2023-695821Monitor
WP Recipe Maker <= 9.1.0 - Authenticated(Contributor+) Stored Cross-Site Scripting via Shortcode
MediumCVSS 5.4No exploitEPSS 0%bootstrapped · wp recipe makerJan 18, 2024
- CVE-2024-349021Monitor
WP Recipe Maker <= 9.3.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via wprm-recipe-roundup-item Shortcode
MediumCVSS 5.4No exploitEPSS 0%bootstrapped · wp recipe makerMay 2, 2024
- CVE-2024-157119Monitor
WP Recipe Maker <= 9.2.1 - Authenticated Stored Cross-Site Scripting via Video Embed
MediumCVSS 4.8No exploitEPSS 0%bootstrapped · wp recipe makerApr 9, 2024
- CVE-2024-038017Monitor
WP Recipe Maker <= 9.1.0 - Directory Traversal
MediumCVSS 4.3No exploitEPSS 1%bootstrapped · wp recipe makerFeb 5, 2024