fetchdesigns records
5 published records for vendor fetchdesigns.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 60%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-1236 Improper Neutralization of Formula Elements in a CSV File1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-862 Missing Authorization1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2023-39165No exploit | WordPress Sign-up Sheets Plugin <= 2.2.8 is vulnerable to Cross Site Request Forgery (CSRF)fetchdesigns · sign-up sheets · CWE-352 | High8.8 | — | 0.2% | Oct 3, 2023 |
32Monitor | CVE-2021-24441No exploit | Sign-up Sheets < 1.0.14 - Authenticated CSV Injectionfetchdesigns · sign-up sheets · CWE-1236 | High8.0 | — | 1.3% | Jul 12, 2021 |
24Monitor | CVE-2024-6020No exploit | Sign-up Sheets < 2.2.13 - Reflected XSSfetchdesigns · sign-up sheets · CWE-79 | Medium6.1 | — | 0.4% | Sep 4, 2024 |
21Monitor | CVE-2024-39654No exploit | WordPress Sign-up Sheets plugin <= 2.2.12 - Broken Access Control vulnerabilityfetch designs · sign-up sheets · CWE-862 | Medium5.3 | — | 0.4% | Nov 1, 2024 |
19Monitor | CVE-2021-24440No exploit | Sign-up Sheets < 1.0.14 - Authenticated Stored Cross-Site Scripting (XSS)fetchdesigns · sign-up sheets · CWE-79 | Medium4.8 | — | 0.6% | Jul 12, 2021 |
- CVE-2023-3916535Monitor
WordPress Sign-up Sheets Plugin <= 2.2.8 is vulnerable to Cross Site Request Forgery (CSRF)
HighCVSS 8.8No exploitEPSS 0%fetchdesigns · sign-up sheetsOct 3, 2023
- CVE-2021-2444132Monitor
Sign-up Sheets < 1.0.14 - Authenticated CSV Injection
HighCVSS 8.0No exploitEPSS 1%fetchdesigns · sign-up sheetsJul 12, 2021
- CVE-2024-602024Monitor
Sign-up Sheets < 2.2.13 - Reflected XSS
MediumCVSS 6.1No exploitEPSS 0%fetchdesigns · sign-up sheetsSep 4, 2024
- CVE-2024-3965421Monitor
WordPress Sign-up Sheets plugin <= 2.2.12 - Broken Access Control vulnerability
MediumCVSS 5.3No exploitEPSS 0%fetch designs · sign-up sheetsNov 1, 2024
- CVE-2021-2444019Monitor
Sign-up Sheets < 1.0.14 - Authenticated Stored Cross-Site Scripting (XSS)
MediumCVSS 4.8No exploitEPSS 1%fetchdesigns · sign-up sheetsJul 12, 2021