Extension WordPress
Vulnérabilités Like Button Rating ♥ LikeBtn
Cette page rassemble les failles publiées pour Like Button Rating ♥ LikeBtn, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Like Button Rating ♥ LikeBtn
5 fiches
Like Button Rating <= 2.6.53 – Cross-Site Request Forgery
The Like Button Rating ♥ LikeBtn plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.6.53. This is due to missing or incorrect nonce validation on an unknown function. This makes…
*-2.6.53
2.6.54
29/08/2024
Like Button Rating ♥ LikeBtn <= 2.6.44 – Arbitrary e-mail Sending
The Like Button Rating WordPress plugin before 2.6.45 allows any logged-in user, such as subscriber, to send arbitrary e-mails to any recipient, with any subject and body
*-2.6.44
2.6.45
23/05/2022
Like Button Rating <= 2.6.37 – Unauthorised Vote Export to Email & IP Addresses Disclosure
The Like Button Rating ♥ LikeBtn WordPress plugin before 2.6.38 does not have any authorisation and CSRF checks in the likebtn_export_votes AJAX action, which could allow any authenticated user, such as subscriber, to get a list of email…
*-2.6.37
2.6.38
11/11/2021
Like Button Rating ♥ LikeBtn < 2.6.32 – Server-Side Request Forgery
The LikeBtn WordPress Like Button Rating ♥ LikeBtn WordPress plugin before 2.6.32 was vulnerable to Unauthenticated Full-Read Server-Side Request Forgery (SSRF).
[*, 2.6.32)
2.6.32
06/02/2021
Like Button Rating <= 2.5.3 – Arbitrary Settings Change
The Like Button Rating plugin for WordPress is vulnerable to authorization bypass due to a missing capability check in the 'init' action in versions up to, and including, 2.5.3. This makes it possible for unauthenticated attackers to modify…
*-2.5.3
2.5.4
02/11/2017
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.