Extension WordPress
Vulnérabilités Yumpu E-Paper publishing
Cette page rassemble les failles publiées pour Yumpu E-Paper publishing, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Yumpu E-Paper publishing
2 fiches
Yumpu E-Paper publishing <= 3.0.8 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Yumpu E-Paper publishing plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'YUMPU' shortcode in all versions up to, and including, 3.0.8 due to insufficient input sanitization and output escaping on user supplied attributes.…
*-3.0.8
3.0.9
08/01/2025
Yumpu ePaper publishing <= 2.0.24 – Missing Authorization to PDF Upload, Publishing, and API Key Modification
The Yumpu ePaper publishing plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the ajax_handler function in all versions up to, and including, 2.0.24. This makes it possible for authenticated…
*-2.0.24
3.0.0
29/05/2024
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.