Extension WordPress
Vulnérabilités Better Robots.txt – AI-Ready Crawl Control & Bot Governance
Cette page rassemble les failles publiées pour Better Robots.txt – AI-Ready Crawl Control & Bot Governance, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Better Robots.txt – AI-Ready Crawl Control & Bot Governance
3 fiches
Robots.txt optimization <= 1.4.5 – Cross Site Request Forgery
The Robots.txt optimization plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.4.5. This is due to missing nonce validation on the page function. This makes it possible for unauthenticated attackers to…
*-1.4.5
1.4.6
14/02/2023
Freemius SDK <= 2.4.2 – Missing Authorization Checks
The Freemius SDK, as used by hundreds of WordPress plugin and theme developers, was vulnerable to Cross-Site Request Forgery and Information disclosure due to missing capability checks and nonce protection on the _get_debug_log, _get_db_option, and the _set_db_option functions…
[*, 1.4.4)
1.4.4
04/03/2022
Freemius SDK <= 2.2.3 – Missing Authorization to Arbitrary Options Update
The Freemius SDK for WordPress is vulnerable to authorization bypass due to a missing capability check on the _get_db_option and _set_db_option functions in versions up to, and including, 2.2.3. This makes it possible for authenticated attackers, with subscriber-level…
[*, 1.2.6)
1.2.6
25/02/2019
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.