CVE-2025-46237
- EPSS 0.17%
- Veröffentlicht 22.04.2025 09:53:25
- Zuletzt bearbeitet 23.04.2026 15:29:55
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Yannick Lefebvre Link Library link-library allows Stored XSS.This issue affects Link Library: from n/a through <= 7.8.
CVE-2024-13404
- EPSS 0.28%
- Veröffentlicht 21.01.2025 10:15:07
- Zuletzt bearbeitet 31.01.2025 20:18:46
The Link Library plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'searchll' parameter in all versions up to, and including, 7.7.2 due to insufficient input sanitization and output escaping. This makes it possible for unau...
CVE-2024-38711
- EPSS 0.33%
- Veröffentlicht 20.07.2024 08:15:11
- Zuletzt bearbeitet 03.02.2025 15:43:59
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Yannick Lefebvre Link Library allows Reflected XSS.This issue affects Link Library: from n/a through 7.7.1.
CVE-2024-35687
- EPSS 0.33%
- Veröffentlicht 08.06.2024 15:15:51
- Zuletzt bearbeitet 21.11.2024 09:20:39
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Yannick Lefebvre Link Library link-library allows Reflected XSS.This issue affects Link Library: from n/a through 7.6.3.
CVE-2024-4281
- EPSS 0.26%
- Veröffentlicht 08.05.2024 10:15:08
- Zuletzt bearbeitet 08.04.2026 17:18:52
The Link Library plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'link-library' shortcode in all versions up to, and including, 7.6.11 due to insufficient input sanitization and output escaping on user supplied attr...
CVE-2024-2325
- EPSS 0.41%
- Veröffentlicht 09.04.2024 19:15:31
- Zuletzt bearbeitet 08.04.2026 19:21:04
The Link Library plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the searchll parameter in all versions up to, and including, 7.6.6 due to insufficient input sanitization and output escaping. This makes it possible for unauth...
CVE-2024-29123
- EPSS 0.42%
- Veröffentlicht 19.03.2024 15:15:10
- Zuletzt bearbeitet 28.04.2026 19:23:43
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Yannick Lefebvre Link Library allows Reflected XSS.This issue affects Link Library: from n/a through 7.6.
CVE-2024-1559
- EPSS 0.42%
- Veröffentlicht 20.02.2024 04:15:07
- Zuletzt bearbeitet 08.04.2026 18:20:43
The Link Library plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'll_reciprocal' parameter in all versions up to, and including, 7.6 due to insufficient input sanitization and output escaping. This makes it possible for unau...
CVE-2024-24875
- EPSS 0.21%
- Veröffentlicht 12.02.2024 09:15:12
- Zuletzt bearbeitet 28.04.2026 19:23:24
Cross-Site Request Forgery (CSRF) vulnerability in Yannick Lefebvre Link Library.This issue affects Link Library: from n/a through 7.5.13.
CVE-2024-24879
- EPSS 0.38%
- Veröffentlicht 08.02.2024 12:15:55
- Zuletzt bearbeitet 28.04.2026 19:23:25
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Yannick Lefebvre Link Library allows Reflected XSS.This issue affects Link Library: from n/a through 7.5.13.