Extension WordPress
Vulnérabilités Countdown Timer – Widget Countdown
Cette page rassemble les failles publiées pour Countdown Timer – Widget Countdown, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Countdown Timer – Widget Countdown
3 fiches
Countdown Timer – Widget Countdown <= 2.7.7 – Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
The Countdown Timer – Widget Countdown plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpdevart_countdown' shortcode in all versions up to, and including, 2.7.7 due to insufficient input sanitization and output escaping on user…
*-2.7.7
2.7.8
09/01/2026
Widget Countdown <= 2.7.4 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Widget Countdown plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.7.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and…
*-2.7.4
2.7.5
07/05/2025
Widget Countdown <= 2.7.1 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Widget Countdown plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.7.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and…
*-2.7.1
2.7.2
24/01/2025
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.