ShortPixel kayıtları
shortpixel üreticisine ait 10 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %40
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-862 Missing Authorization2
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-502 Deserialization of Untrusted Data1
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
10 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
35İzleyin | CVE-2023-0255İstismar yok | Enable Media Replace < 4.0.2 - Author+ Arbitrary File Uploadshortpixel · enable media replace · CWE-434 | Yüksek8,8 | — | %1,1 | 13 Şub 2023 |
35İzleyin | CVE-2023-4643İstismar yok | Enable Media Replace < 4.1.3 - Author+ PHP Object Injectionshortpixel · enable media replace · CWE-502 | Yüksek8,8 | — | %0,8 | 16 Eki 2023 |
35İzleyin | CVE-2024-48044İstismar yok | WordPress ShortPixel Image Optimizer plugin <= 5.6.3 - Broken Access Control vulnerabilityshortpixel · image optimizer · CWE-862 | Yüksek8,8 | — | %0,4 | 1 Kas 2024 |
35İzleyin | CVE-2023-32512İstismar yok | WordPress ShortPixel Adaptive Images Plugin <= 3.7.1 is vulnerable to Cross Site Request Forgery (CSRF)shortpixel · shortpixel adaptive images · CWE-352 | Yüksek8,8 | — | %0,3 | 9 Kas 2023 |
30İzleyin | CVE-2024-48043İstismar yok | WordPress ShortPixel Image Optimizer plugin <= 5.6.3 - SQL Injection vulnerabilityshortpixel · shortpixel image optimizer · CWE-89 | Yüksek7,6 | — | %0,4 | 17 Eki 2024 |
30İzleyin | CVE-2024-32810İstismar yok | WordPress ShortPixel Critical CSS plugin <= 1.0.2 - Broken Access Control vulnerabilityshortpixel · shortpixel critical css · CWE-862 | Yüksek7,6 | — | %0,4 | 3 May 2024 |
24İzleyin | CVE-2023-0334Kavram kanıtı | ShortPixel Adaptive Images < 3.6.3 - Reflected XSSshortpixel · shortpixel adaptive images · CWE-79 | Orta6,1 | — | %0,9 | 27 Şub 2023 |
24İzleyin | CVE-2023-6737İstismar yok | Enable Media Replace <= 4.1.4 - Reflected Cross-Site Scriptingshortpixel · enable media replace · CWE-79 | Orta6,1 | — | %0,5 | 11 Oca 2024 |
19İzleyin | CVE-2022-2554İstismar yok | Enable Media Replace < 4.0.0 - Admin+ Path Traversalshortpixel · enable media replace · CWE-22 | Orta4,9 | — | %0,9 | 10 Eki 2022 |
17İzleyin | CVE-2022-29417İstismar yok | WordPress ShortPixel Adaptive Images plugin <= 3.3.1 - Subscriber+ Plugin Settings Update vulnerabilityshortpixel · shortpixel adaptive images · CWE-284 | Orta4,3 | — | %0,6 | 25 Nis 2022 |
- CVE-2023-025535İzleyin
Enable Media Replace < 4.0.2 - Author+ Arbitrary File Upload
YüksekCVSS 8,8İstismar yokEPSS %1shortpixel · enable media replace13 Şub 2023
- CVE-2023-464335İzleyin
Enable Media Replace < 4.1.3 - Author+ PHP Object Injection
YüksekCVSS 8,8İstismar yokEPSS %1shortpixel · enable media replace16 Eki 2023
- CVE-2024-4804435İzleyin
WordPress ShortPixel Image Optimizer plugin <= 5.6.3 - Broken Access Control vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0shortpixel · image optimizer1 Kas 2024
- CVE-2023-3251235İzleyin
WordPress ShortPixel Adaptive Images Plugin <= 3.7.1 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0shortpixel · shortpixel adaptive images9 Kas 2023
- CVE-2024-4804330İzleyin
WordPress ShortPixel Image Optimizer plugin <= 5.6.3 - SQL Injection vulnerability
YüksekCVSS 7,6İstismar yokEPSS %0shortpixel · shortpixel image optimizer17 Eki 2024
- CVE-2024-3281030İzleyin
WordPress ShortPixel Critical CSS plugin <= 1.0.2 - Broken Access Control vulnerability
YüksekCVSS 7,6İstismar yokEPSS %0shortpixel · shortpixel critical css3 May 2024
- CVE-2023-033424İzleyin
ShortPixel Adaptive Images < 3.6.3 - Reflected XSS
OrtaCVSS 6,1Kavram kanıtıEPSS %1shortpixel · shortpixel adaptive images27 Şub 2023
- CVE-2023-673724İzleyin
Enable Media Replace <= 4.1.4 - Reflected Cross-Site Scripting
OrtaCVSS 6,1İstismar yokEPSS %0shortpixel · enable media replace11 Oca 2024
- CVE-2022-255419İzleyin
Enable Media Replace < 4.0.0 - Admin+ Path Traversal
OrtaCVSS 4,9İstismar yokEPSS %1shortpixel · enable media replace10 Eki 2022
- CVE-2022-2941717İzleyin
WordPress ShortPixel Adaptive Images plugin <= 3.3.1 - Subscriber+ Plugin Settings Update vulnerability
OrtaCVSS 4,3İstismar yokEPSS %1shortpixel · shortpixel adaptive images25 Nis 2022