imagerecycle records
15 published records for vendor imagerecycle.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 20%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-352 Cross-Site Request Forgery (CSRF)6
- CWE-862 Missing Authorization6
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
15 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
24Monitor | CVE-2024-54266No exploit | WordPress ImageRecycle pdf & image compression plugin <= 3.1.16 - Reflected Cross Site Scripting (XSS) vulnerabilityimagerecycle · imagerecycle pdf \& image compression · CWE-79 | Medium6.1 | — | 0.4% | Dec 13, 2024 |
24Monitor | CVE-2023-40196No exploit | WordPress ImageRecycle pdf & image compression Plugin <= 3.1.11 is vulnerable to Cross Site Scripting (XSS)imagerecycle · imagerecycle pdf \& image compression · CWE-79 | Medium6.1 | — | 0.4% | Sep 4, 2023 |
24Monitor | CVE-2023-30494No exploit | WordPress ImageRecycle pdf & image compression Plugin <= 3.1.10 is vulnerable to Cross Site Scripting (XSS)imagerecycle · imagerecycle pdf \& image compression · CWE-79 | Medium6.1 | — | 0.4% | Sep 4, 2023 |
17Monitor | CVE-2024-1089No exploit | ImageRecycle pdf & image compression <= 3.1.13 - Missing Authorization to Settings Update in optimizeAllOnimagerecycle · imagerecycle pdf \& image compression · CWE-862 | Medium4.3 | — | 0.4% | Feb 28, 2024 |
17Monitor | CVE-2024-0984No exploit | ImageRecycle pdf & image compression <= 3.1.13 - Missing Authorization to Settings Update in disableOptimizationimagerecycle · imagerecycle pdf \& image compression · CWE-862 | Medium4.3 | — | 0.4% | Feb 28, 2024 |
17Monitor | CVE-2024-0983No exploit | ImageRecycle pdf & image compression <= 3.1.13 - Missing Authorization to Settings Update in enableOptimizationimagerecycle · imagerecycle pdf \& image compression · CWE-862 | Medium4.3 | — | 0.4% | Feb 28, 2024 |
17Monitor | CVE-2024-1090No exploit | ImageRecycle pdf & image compression <= 3.1.13 - Missing Authorization to Settings Update in stopOptimizeAllimagerecycle · imagerecycle pdf \& image compression · CWE-862 | Medium4.3 | — | 0.3% | Feb 28, 2024 |
17Monitor | CVE-2024-1091No exploit | ImageRecycle pdf & image compression <= 3.1.13 - Missing Authorization to Plugin Data Removal in reinitializeimagerecycle · imagerecycle pdf \& image compression · CWE-862 | Medium4.3 | — | 0.3% | Feb 28, 2024 |
17Monitor | CVE-2024-6631No exploit | ImageRecycle pdf & image compression <= 3.1.14 - Missing Authorization in Several AJAX Actionsimagerecycle · imagerecycle pdf \& image compression · CWE-862 | Medium4.3 | — | 0.3% | Aug 23, 2024 |
17Monitor | CVE-2024-1334No exploit | ImageRecycle pdf & image compression <= 3.1.13 - Cross-Site Request Forgery to Settings Update in enableOptimizationimagerecycle · imagerecycle pdf \& image compression · CWE-352 | Medium4.3 | — | 0.2% | Feb 28, 2024 |
17Monitor | CVE-2024-1338No exploit | ImageRecycle pdf & image compression <= 3.1.13 - Cross-Site Request Forgery to Settings Update in stopOptimizeAllimagerecycle · imagerecycle pdf \& image compression · CWE-352 | Medium4.3 | — | 0.2% | Feb 28, 2024 |
17Monitor | CVE-2024-1339No exploit | ImageRecycle pdf & image compression <= 3.1.13 - Cross-Site Request Forgery to Plugin Data Removal in reinitializeimagerecycle · imagerecycle pdf \& image compression · CWE-352 | Medium4.3 | — | 0.2% | Feb 28, 2024 |
17Monitor | CVE-2024-1336No exploit | ImageRecycle pdf & image compression <= 3.1.13 - Cross-Site Request Forgery to Settings Update in optimizeAllOnimagerecycle · imagerecycle pdf \& image compression · CWE-352 | Medium4.3 | — | 0.2% | Feb 28, 2024 |
17Monitor | CVE-2024-1335No exploit | ImageRecycle pdf & image compression <= 3.1.13 - Cross-Site Request Forgery to Settings Update in disableOptimizationimagerecycle · imagerecycle pdf \& image compression · CWE-352 | Medium4.3 | — | 0.2% | Feb 28, 2024 |
17Monitor | CVE-2024-8120No exploit | ImageRecycle pdf & image compression <= 3.1.14 - Cross-Site Request in Several AJAX Actionsimagerecycle · imagerecycle pdf \& image compression · CWE-352 | Medium4.3 | — | 0.2% | Aug 23, 2024 |
- CVE-2024-5426624Monitor
WordPress ImageRecycle pdf & image compression plugin <= 3.1.16 - Reflected Cross Site Scripting (XSS) vulnerability
MediumCVSS 6.1No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionDec 13, 2024
- CVE-2023-4019624Monitor
WordPress ImageRecycle pdf & image compression Plugin <= 3.1.11 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 6.1No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionSep 4, 2023
- CVE-2023-3049424Monitor
WordPress ImageRecycle pdf & image compression Plugin <= 3.1.10 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 6.1No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionSep 4, 2023
- CVE-2024-108917Monitor
ImageRecycle pdf & image compression <= 3.1.13 - Missing Authorization to Settings Update in optimizeAllOn
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionFeb 28, 2024
- CVE-2024-098417Monitor
ImageRecycle pdf & image compression <= 3.1.13 - Missing Authorization to Settings Update in disableOptimization
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionFeb 28, 2024
- CVE-2024-098317Monitor
ImageRecycle pdf & image compression <= 3.1.13 - Missing Authorization to Settings Update in enableOptimization
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionFeb 28, 2024
- CVE-2024-109017Monitor
ImageRecycle pdf & image compression <= 3.1.13 - Missing Authorization to Settings Update in stopOptimizeAll
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionFeb 28, 2024
- CVE-2024-109117Monitor
ImageRecycle pdf & image compression <= 3.1.13 - Missing Authorization to Plugin Data Removal in reinitialize
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionFeb 28, 2024
- CVE-2024-663117Monitor
ImageRecycle pdf & image compression <= 3.1.14 - Missing Authorization in Several AJAX Actions
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionAug 23, 2024
- CVE-2024-133417Monitor
ImageRecycle pdf & image compression <= 3.1.13 - Cross-Site Request Forgery to Settings Update in enableOptimization
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionFeb 28, 2024
- CVE-2024-133817Monitor
ImageRecycle pdf & image compression <= 3.1.13 - Cross-Site Request Forgery to Settings Update in stopOptimizeAll
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionFeb 28, 2024
- CVE-2024-133917Monitor
ImageRecycle pdf & image compression <= 3.1.13 - Cross-Site Request Forgery to Plugin Data Removal in reinitialize
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionFeb 28, 2024
- CVE-2024-133617Monitor
ImageRecycle pdf & image compression <= 3.1.13 - Cross-Site Request Forgery to Settings Update in optimizeAllOn
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionFeb 28, 2024
- CVE-2024-133517Monitor
ImageRecycle pdf & image compression <= 3.1.13 - Cross-Site Request Forgery to Settings Update in disableOptimization
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionFeb 28, 2024
- CVE-2024-812017Monitor
ImageRecycle pdf & image compression <= 3.1.14 - Cross-Site Request in Several AJAX Actions
MediumCVSS 4.3No exploitEPSS 0%imagerecycle · imagerecycle pdf \& image compressionAug 23, 2024