Skip to content
Noroxi

iframe project records

4 published records for vendor iframe project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
50%
Median publish → KEV
No record has entered KEV

Records by year

  1. 20
  2. 23
  3. 24

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

Attack profile

All records

4 records
  • The iframe plugin before 4.5 for WordPress does not sanitize a URL.

    MediumCVSS 6.1Proof of conceptEPSS 2%

    iframe project · iframeMay 7, 2020

  • CVE-2023-4919
    21Monitor

    iframe <= 4.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'iframe' Shortcode

    MediumCVSS 5.4No exploitEPSS 1%

    iframe project · iframeOct 20, 2023

  • WordPress iFrame Plugin <= 4.8 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 5.4No exploitEPSS 0%

    iframe project · iframeJan 5, 2024

  • WordPress iframe popup Plugin <= 3.3 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 4.8No exploitEPSS 0%

    iframe project · iframeAug 25, 2023