Extension WordPress
Vulnérabilités LiquidPoll – Polls, Surveys, NPS and Feedback Reviews
Cette page rassemble les failles publiées pour LiquidPoll – Polls, Surveys, NPS and Feedback Reviews, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de LiquidPoll – Polls, Surveys, NPS and Feedback Reviews
4 fiches
LiquidPoll <= 3.3.78 – Unauthenticated Stored Cross-Site Scripting via form_data Parameter
The LiquidPoll – Polls, Surveys, NPS and Feedback Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘form_data’ parameter in all versions up to, and including, 3.3.78 due to insufficient input sanitization and output escaping.…
*-3.3.78
Non indiqué
20/08/2024
LiquidPoll – Advanced Polls for Creators and Brands <= 3.3.77 – Unauthenticated Stored Cross-Site Scripting
The LiquidPoll – Polls, Surveys, NPS and Feedback Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting via poll comments in all versions up to, and including, 3.3.77 due to insufficient input sanitization and output escaping. This…
*-3.3.77
3.3.78
01/08/2024
LiquidPoll – Polls, Surveys, NPS and Feedback Reviews <= 3.3.76 – Information Exposure
The LiquidPoll – Polls, Surveys, NPS and Feedback Reviews plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.3.76 via the poller_list shortcode. This makes it possible for authenticated attackers, with…
*-3.3.76
3.3.77
21/03/2024
LiquidPoll – Advanced Polls for Creators and Brands <= 3.3.68 – Missing Authorization via activate_addon
The LiquidPoll – Advanced Polls for Creators and Brands plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability and nonce check on the 'activate_addon' function in versions up to, and including, 3.3.68.…
*-3.3.68
3.3.69
28/06/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.