Extension WordPress

Vulnérabilités Translate WordPress – Google Language Translator

Cette page rassemble les failles publiées pour Translate WordPress – Google Language Translator, leurs plages de versions affectées et les correctifs signalés dans la base locale.

8Vulnérabilités
0Critiques
8Avec correctif
8,8CVSS maximal

Historique de sécurité

CVE et vulnérabilités de Translate WordPress – Google Language Translator

8 fiches

CVE-2023-50375 Moyenne · 5,3
Translate WordPress – Google Language Translator

Google Language Translator <= 6.0.19 – Missing Authorization via admin notifications

The Google Language Translator plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on multiple admin notification functions in versions up to, and including, 6.0.19. This makes it possible for unauthenticated…

Versions affectées

*-6.0.19

Correctif

6.0.20

Publication

13/12/2023

Vulnérabilité Informationnelle
Translate WordPress – Google Language Translator

Google Language Translator < 6.0.20 – Missing Authorization to Notice Dismissal

The Translate WordPress – Google Language Translator plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the admin_notice_ignore() function in all versions up to 6.0.20 (exclusive). This makes it possible…

Versions affectées

[*, 6.0.20)

Correctif

6.0.20

Publication

08/12/2023

CVE-2021-24594 Moyenne · 4,8
Translate WordPress – Google Language Translator

Translate WordPress – Google Language Translator <= 6.0.11 – Admin+ Stored Cross-Site Scripting

The Translate WordPress – Google Language Translator WordPress plugin before 6.0.12 does not sanitise and escape some of its settings before outputting it in various pages, allowing high privilege users to perform Cross-Site Scripting attacks even when the…

Versions affectées

[*, 6.0.12)

Correctif

6.0.12

Publication

05/10/2021

CVE-2021-4452 Élevée · 7,1
Translate WordPress – Google Language Translator

Google Language Translator <= 6.0.9 – Reflected Cross-Site Scripting

The Google Language Translator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via multiple parameters in versions up to, and including, 6.0.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers…

Versions affectées

[*, 6.0.10)

Correctif

6.0.10

Publication

21/07/2021

Vulnérabilité Moyenne · 6,4
Translate WordPress – Google Language Translator

Google Language Translator <= 6.0.9 – Authenticated Cross-Site Scripting

The Google Language Translator plugin for WordPress is vulnerable to Cross-Site Scripting via the glt shortcode in versions up to, and including, 6.0.9 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers…

Versions affectées

[*, 6.0.10)

Correctif

6.0.10

Publication

20/07/2021

Vulnérabilité Moyenne · 6,4
Translate WordPress – Google Language Translator

Google Language Translator <= 4.0.9 – Authenticated Stored Cross-Site Scripting

The Google Language Translator plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.0.9 via 'the googlelanguagetranslator_flags_order' parameter due to insufficient input sanitization and output escaping. This makes it possible for attackers…

Versions affectées

[*, 5.0.0)

Correctif

5.0.0

Publication

13/08/2015

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités