S3Bubble records
4 published records for vendor s3bubble.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2015-9463No exploit | The s3bubble-amazon-s3-audio-streaming plugin 2.0 for WordPress has directory traversal via the adverts/assets/plugins/ultimate/content/downs3bubble · s3bubble-amazon-s3-audio-streaming · CWE-22 | High7.5 | — | 4.1% | Oct 10, 2019 |
31Monitor | CVE-2015-9464No exploit | The s3bubble-amazon-s3-html-5-video-with-adverts plugin 0.7 for WordPress has directory traversal via the adverts/assets/plugins/ultimate/cos3bubble · s3bubble-amazon-s3-html-5-video-with-adverts · CWE-22 | High7.5 | — | 3.7% | Oct 10, 2019 |
28Monitor | CVE-2024-13862No exploit | S3Bubble Media Streaming <= 8.0 - Reflected XSSs3bubble · s3bubble-amazon-web-services-oembed-media-streaming-support · CWE-79 | High7.1 | — | 0.3% | Mar 11, 2025 |
24Monitor | CVE-2024-13865No exploit | drm-protected-video-streaming <= 4.2.1 - Reflected XSSs3bubble · s3player · CWE-79 | Medium6.1 | — | 0.4% | May 15, 2025 |
- CVE-2015-946331Monitor
The s3bubble-amazon-s3-audio-streaming plugin 2.0 for WordPress has directory traversal via the adverts/assets/plugins/ultimate/content/down
HighCVSS 7.5No exploitEPSS 4%s3bubble · s3bubble-amazon-s3-audio-streamingOct 10, 2019
- CVE-2015-946431Monitor
The s3bubble-amazon-s3-html-5-video-with-adverts plugin 0.7 for WordPress has directory traversal via the adverts/assets/plugins/ultimate/co
HighCVSS 7.5No exploitEPSS 4%s3bubble · s3bubble-amazon-s3-html-5-video-with-advertsOct 10, 2019
- CVE-2024-1386228Monitor
S3Bubble Media Streaming <= 8.0 - Reflected XSS
HighCVSS 7.1No exploitEPSS 0%s3bubble · s3bubble-amazon-web-services-oembed-media-streaming-supportMar 11, 2025
- CVE-2024-1386524Monitor
drm-protected-video-streaming <= 4.2.1 - Reflected XSS
MediumCVSS 6.1No exploitEPSS 0%s3bubble · s3playerMay 15, 2025