Extension WordPress
Vulnérabilités WP2LEADS | WordPress und KlickTipp einfach verbinden – WooCommerce und KlickTipp einfach verbinden
Cette page rassemble les failles publiées pour WP2LEADS | WordPress und KlickTipp einfach verbinden – WooCommerce und KlickTipp einfach verbinden, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de WP2LEADS | WordPress und KlickTipp einfach verbinden – WooCommerce und KlickTipp einfach verbinden
6 fiches
WP2LEADS <= 3.5.0 – Reflected Cross-Site Scripting
The WP2LEADS plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 3.5.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts…
*-3.5.0
3.5.1
15/06/2025
WP2LEADS <= 3.5.0 – Cross-Site Request Forgery
The WP2LEADS | WordPress und KlickTipp einfach verbinden – WooCommerce und KlickTipp einfach verbinden plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.5.0. This is due to missing or incorrect…
*-3.5.0
3.5.1
15/05/2025
WP2LEADS <= 3.4.5 – Reflected Cross-Site Scripting
The WP2LEADS plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in versions up to, and including, 3.4.5 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts…
*-3.4.5
3.4.7
27/03/2025
WP2LEADS <= 3.4.2 – Reflected Cross-Site Scripting
The WP2LEADS | WordPress und KlickTipp einfach verbinden – WooCommerce und KlickTipp einfach verbinden plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and including, 3.4.2 due to insufficient input sanitization and output…
*-3.4.2
3.4.3
03/01/2025
WP2LEADS <= 3.3.3 – Reflected Cross-Site Scripting
The WP2LEADS | WordPress und KlickTipp einfach verbinden – WooCommerce und KlickTipp einfach verbinden plugin for WordPress is vulnerable to Reflected Cross-Site Scripting in all versions up to, and including, 3.3.3 due to insufficient input sanitization and output…
*-3.3.3
3.3.4
24/12/2024
WP2LEADS <= 3.2.7 – Missing Authorization
The WP2LEADS plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several functions such as import_maps in versions up to, and including, 3.2.7. This makes it possible for authenticated attackers, with subscriber-level…
*-3.2.7
3.2.8
08/04/2024
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.