Extension WordPress
Vulnérabilités FlatPM – Ad Manager, AdSense and Custom Code
Cette page rassemble les failles publiées pour FlatPM – Ad Manager, AdSense and Custom Code, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de FlatPM – Ad Manager, AdSense and Custom Code
3 fiches
FlatPM – Ad Manager, AdSense and Custom Code <= 3.2.2 – Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Post Meta
The FlatPM – Ad Manager, AdSense and Custom Code plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'rank_math_description' custom field in all versions up to, and including, 3.2.2 due to insufficient input sanitization and output…
*-3.2.2
3.2.3
20/01/2026
FlatPM < 3.1.05 – Authenticated (Contributor+) Stored Cross-Site Scripting
The FlatPM plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to 3.1.05 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject…
[*, 3.1.05)
3.1.05
25/03/2024
Flat PM <= 2.661 – Reflected Cross-Site Scripting
The Flat PM plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 2.661 due to insufficient input sanitization and output escaping on the block_cat_ID value. This makes it possible for unauthenticated attackers…
*-2.661
2.662
17/11/2022
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.