GoDaddy records
6 published records for vendor godaddy.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 66.7%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-913 Improper Control of Dynamically-Managed Code Resources1
- CWE-918 Server-Side Request Forgery (SSRF)1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
Bug bounty scope
The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.
All records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2016-10903No exploit | The GoDaddy godaddy-email-marketing-sign-up-forms plugin before 1.1.3 for WordPress has CSRF.godaddy · godaddy email marketing · CWE-352 | High8.8 | — | 0.7% | Aug 21, 2019 |
26Monitor | CVE-2024-4260No exploit | CoBlocks < 3.1.12 - Contributor+ SSRFgodaddy · coblocks · CWE-918 | Medium6.5 | — | 0.5% | Jul 23, 2024 |
21Monitor | CVE-2021-26276No exploit | scripts/cli.js in the GoDaddy node-config-shield (aka Config Shield) package before 0.2.2 for Node.js calls eval when processing a set commagodaddy · node-config-shield · CWE-913 | Medium5.3 | — | 1.2% | Jan 27, 2021 |
21Monitor | CVE-2024-2369No exploit | Page Builder Gutenberg Blocks < 3.1.7 - Contributor+ Stored XSSgodaddy · coblocks · CWE-79 | Medium5.4 | — | 0.4% | Apr 2, 2024 |
21Monitor | CVE-2024-1049No exploit | Page Builder Gutenberg Blocks – CoBlocks <= 3.1.6 - Authenticated (Contributor+) Stored Cross-Site Scriptinggodaddy · coblocks · CWE-79 | Medium5.4 | — | 0.3% | Mar 23, 2024 |
19Monitor | CVE-2024-7132No exploit | CoBlocks < 3.1.13 - Editor+ Stored XSSgodaddy · coblocks · CWE-79 | Medium4.8 | — | 0.4% | Aug 29, 2024 |
- CVE-2016-1090335Monitor
The GoDaddy godaddy-email-marketing-sign-up-forms plugin before 1.1.3 for WordPress has CSRF.
HighCVSS 8.8No exploitEPSS 1%godaddy · godaddy email marketingAug 21, 2019
- CVE-2024-426026Monitor
CoBlocks < 3.1.12 - Contributor+ SSRF
MediumCVSS 6.5No exploitEPSS 1%godaddy · coblocksJul 23, 2024
- CVE-2021-2627621Monitor
scripts/cli.js in the GoDaddy node-config-shield (aka Config Shield) package before 0.2.2 for Node.js calls eval when processing a set comma
MediumCVSS 5.3No exploitEPSS 1%godaddy · node-config-shieldJan 27, 2021
- CVE-2024-236921Monitor
Page Builder Gutenberg Blocks < 3.1.7 - Contributor+ Stored XSS
MediumCVSS 5.4No exploitEPSS 0%godaddy · coblocksApr 2, 2024
- CVE-2024-104921Monitor
Page Builder Gutenberg Blocks – CoBlocks <= 3.1.6 - Authenticated (Contributor+) Stored Cross-Site Scripting
MediumCVSS 5.4No exploitEPSS 0%godaddy · coblocksMar 23, 2024
- CVE-2024-713219Monitor
CoBlocks < 3.1.13 - Editor+ Stored XSS
MediumCVSS 4.8No exploitEPSS 0%godaddy · coblocksAug 29, 2024