Themepoints kayıtları
themepoints üreticisine ait 8 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %12,5
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')7
- CWE-80 Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
8 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
24İzleyin | CVE-2024-13704İstismar yok | Super Testimonials <= 4.0.1 - Unauthenticated Stored Cross-Site Scriptingthemepoints · super testimonials · CWE-80 | Orta6,1 | — | %0,3 | 18 Şub 2025 |
21İzleyin | CVE-2023-5667İstismar yok | Tab Ultimate <= 1.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcodethemepoints · tab ultimate · CWE-79 | Orta5,4 | — | %0,5 | 22 Kas 2023 |
21İzleyin | CVE-2023-5666İstismar yok | Accordion <= 2.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcodethemepoints · accordion · CWE-79 | Orta5,4 | — | %0,5 | 30 Eki 2023 |
21İzleyin | CVE-2023-5613İstismar yok | Super Testimonials <= 2.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcodethemepoints · super testimonials · CWE-79 | Orta5,4 | — | %0,4 | 20 Eki 2023 |
21İzleyin | CVE-2023-5639İstismar yok | Team Showcase <= 2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcodethemepoints · team showcase · CWE-79 | Orta5,4 | — | %0,4 | 18 Eki 2023 |
21İzleyin | CVE-2023-47809İstismar yok | WordPress Accordion Plugin <= 2.6 is vulnerable to Cross Site Scripting (XSS)themepoints · accordion · CWE-79 | Orta5,4 | — | %0,4 | 22 Kas 2023 |
19İzleyin | CVE-2022-3539İstismar yok | Testimonials (Free < 2.7, Pro < 1.0.8) - Admin+ Stored Cross-Site Scriptingthemepoints · super testimonials · CWE-79 | Orta4,8 | — | %0,5 | 14 Kas 2022 |
19İzleyin | CVE-2021-36858İstismar yok | WordPress Testimonials plugin <= 2.6 - Auth. Stored Cross-Site Scripting (XSS) vulnerabilitythemepoints · super testimonials · CWE-79 | Orta4,8 | — | %0,4 | 28 Eki 2022 |
- CVE-2024-1370424İzleyin
Super Testimonials <= 4.0.1 - Unauthenticated Stored Cross-Site Scripting
OrtaCVSS 6,1İstismar yokEPSS %0themepoints · super testimonials18 Şub 2025
- CVE-2023-566721İzleyin
Tab Ultimate <= 1.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
OrtaCVSS 5,4İstismar yokEPSS %1themepoints · tab ultimate22 Kas 2023
- CVE-2023-566621İzleyin
Accordion <= 2.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
OrtaCVSS 5,4İstismar yokEPSS %1themepoints · accordion30 Eki 2023
- CVE-2023-561321İzleyin
Super Testimonials <= 2.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
OrtaCVSS 5,4İstismar yokEPSS %0themepoints · super testimonials20 Eki 2023
- CVE-2023-563921İzleyin
Team Showcase <= 2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
OrtaCVSS 5,4İstismar yokEPSS %0themepoints · team showcase18 Eki 2023
- CVE-2023-4780921İzleyin
WordPress Accordion Plugin <= 2.6 is vulnerable to Cross Site Scripting (XSS)
OrtaCVSS 5,4İstismar yokEPSS %0themepoints · accordion22 Kas 2023
- CVE-2022-353919İzleyin
Testimonials (Free < 2.7, Pro < 1.0.8) - Admin+ Stored Cross-Site Scripting
OrtaCVSS 4,8İstismar yokEPSS %1themepoints · super testimonials14 Kas 2022
- CVE-2021-3685819İzleyin
WordPress Testimonials plugin <= 2.6 - Auth. Stored Cross-Site Scripting (XSS) vulnerability
OrtaCVSS 4,8İstismar yokEPSS %0themepoints · super testimonials28 Eki 2022