Extension WordPress
Vulnérabilités Companion Sitemap Generator – Simple, Smart, and SEO-Ready
Cette page rassemble les failles publiées pour Companion Sitemap Generator – Simple, Smart, and SEO-Ready, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Companion Sitemap Generator – Simple, Smart, and SEO-Ready
3 fiches
Companion Sitemap Generator <= 4.5.1.1 – Reflected Cross-Site Scripting
The Companion Sitemap Generator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘tabbed’ and 'subtabt' parameters in versions up to, and including, 4.5.1.1 due to insufficient input sanitization and output escaping. This makes it possible…
*-4.5.1.1
4.5.3
19/06/2023
Companion Sitemap Generator <= 4.5.1.1 – Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
The Companion Sitemap Generator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in versions up to, and including, 4.5.1.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes…
*-4.5.1.1
4.5.2
20/02/2023
Companion Sitemap Generator – HTML & XML <= 3.6.6 – Cross-Site Request Forgery and Local File Inclusion
The Companion Sitemap Generator plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.6.6. This makes it possible for unauthenticated attackers to modify the plugin settings or include any local file with…
*-3.6.6
3.7.0
10/01/2019
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.