Twinpictures

Annual Archive

3 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.14%
  • Veröffentlicht 26.04.2024 08:15:12
  • Zuletzt bearbeitet 21.11.2024 09:17:13

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Twinpictures Annual Archive allows Stored XSS.This issue affects Annual Archive: from n/a through 1.6.0.

  • EPSS 0.18%
  • Veröffentlicht 14.12.2023 14:15:44
  • Zuletzt bearbeitet 21.11.2024 08:33:57

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Twinpictures Annual Archive allows Stored XSS.This issue affects Annual Archive: from n/a through 1.6.0.

Exploit
  • EPSS 0.33%
  • Veröffentlicht 06.02.2023 20:15:13
  • Zuletzt bearbeitet 26.03.2025 14:15:26

The Annual Archive WordPress plugin before 1.6.0 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to per...