Extension WordPress
Vulnérabilités Bulk NoIndex & NoFollow Toolkit
Cette page rassemble les failles publiées pour Bulk NoIndex & NoFollow Toolkit, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Bulk NoIndex & NoFollow Toolkit
5 fiches
Bulk NoIndex & NoFollow Toolkit <= 2.16 – Reflected Cross-Site Scripting
The Bulk NoIndex & NoFollow Toolkit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 2.16 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to…
*-2.16
2.20
01/04/2025
Bulk NoIndex & NoFollow Toolkit <= 2.15 – Reflected Cross-Site Scripting
The Bulk NoIndex & NoFollow Toolkit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of remove_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.15. This makes it…
*-2.15
2.16
25/09/2024
Bulk NoIndex & NoFollow Toolkit <= 2.01 – Reflected Cross-Site Scripting via tab, order, and orderby
The Bulk NoIndex & NoFollow Toolkit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘tab', 'order', and 'orderby’ parameters in versions up to, and including, 2.01 due to insufficient input sanitization and output escaping. This…
*-2.01
2.10
25/03/2024
Bulk NoIndex & NoFollow Toolkit <= 1.42 – Reflected Cross-Site Scripting via 's'
The Bulk NoIndex & NoFollow Toolkit plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in versions up to, and including, 1.42 due to insufficient input sanitization and output escaping. This makes it possible…
[*, 1.5)
1.5
03/10/2023
Bulk NoIndex & NoFollow Toolkit <= 1.5 – Missing Authorization
The Bulk NoIndex & NoFollow Toolkit plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the update_page_callback() and update_page_bulk_callback() functions called via AJAX actions in versions up to, and including,…
*-1.5
1.51
04/09/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.