Extension WordPress
Vulnérabilités Translate WordPress – Google Language Translator
Cette page rassemble les failles publiées pour Translate WordPress – Google Language Translator, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Translate WordPress – Google Language Translator
8 fiches
Google Language Translator <= 6.0.19 – Missing Authorization via admin notifications
The Google Language Translator plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on multiple admin notification functions in versions up to, and including, 6.0.19. This makes it possible for unauthenticated…
*-6.0.19
6.0.20
13/12/2023
Google Language Translator < 6.0.20 – Missing Authorization to Notice Dismissal
The Translate WordPress – Google Language Translator plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the admin_notice_ignore() function in all versions up to 6.0.20 (exclusive). This makes it possible…
[*, 6.0.20)
6.0.20
08/12/2023
Translate WordPress with GTranslate <= 2.9.8 & Translate WordPress – Google Language Translator <= 6.0.13 – Missing Authorization to Sensitive Information Disclosure
The Translate WordPress with GTranslate
*-6.0.13
6.0.14
07/03/2022
Translate WordPress – Google Language Translator <= 6.0.11 – Admin+ Stored Cross-Site Scripting
The Translate WordPress – Google Language Translator WordPress plugin before 6.0.12 does not sanitise and escape some of its settings before outputting it in various pages, allowing high privilege users to perform Cross-Site Scripting attacks even when the…
[*, 6.0.12)
6.0.12
05/10/2021
Google Language Translator <= 6.0.9 – Reflected Cross-Site Scripting
The Google Language Translator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via multiple parameters in versions up to, and including, 6.0.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers…
[*, 6.0.10)
6.0.10
21/07/2021
Google Language Translator <= 6.0.9 – Authenticated Cross-Site Scripting
The Google Language Translator plugin for WordPress is vulnerable to Cross-Site Scripting via the glt shortcode in versions up to, and including, 6.0.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers…
[*, 6.0.10)
6.0.10
20/07/2021
Google Language Translator <= 5.0.05 – Cross-Site Scripting
The google-language-translator plugin before 5.0.06 for WordPress has XSS.
[*, 5.0.06)
5.0.06
18/04/2016
Google Language Translator <= 4.0.9 – Authenticated Stored Cross-Site Scripting
The Google Language Translator plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.0.9 via 'the googlelanguagetranslator_flags_order' parameter due to insufficient input sanitization and output escaping. This makes it possible for attackers…
[*, 5.0.0)
5.0.0
13/08/2015
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.