Extension WordPress
Vulnérabilités SurveyFunnel – Survey Plugin for WordPress
Cette page rassemble les failles publiées pour SurveyFunnel – Survey Plugin for WordPress, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de SurveyFunnel – Survey Plugin for WordPress
3 fiches
SurveyFunnel – Survey Plugin for WordPress <= 1.1.5 – Unauthenticated Information Exposure
The SurveyFunnel – Survey Plugin for WordPress plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.1.5 via several unprotected /wp-json/surveyfunnel/v2/ REST API endpoints. This makes it possible for unauthenticated attackers…
*-1.1.5
Non indiqué
04/12/2025
SurveyFunnel – Survey Plugin for WordPress <= 1.1.5 – Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
The SurveyFunnel – Survey Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'surveyfunnel_lite_survey' shortcode in all versions up to, and including, 1.1.5 due to insufficient input sanitization and output escaping on user…
*-1.1.5
Non indiqué
04/12/2025
Freemius SDK <= 2.4.2 – Missing Authorization Checks
The Freemius SDK, as used by hundreds of WordPress plugin and theme developers, was vulnerable to Cross-Site Request Forgery and Information disclosure due to missing capability checks and nonce protection on the _get_debug_log, _get_db_option, and the _set_db_option functions…
[*, 1.1.3)
1.1.3
04/03/2022
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.