Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
8.8
CVE-2023-25482
- EPSS 0.06%
- Veröffentlicht 18.07.2023 12:15:12
- Zuletzt bearbeitet 21.11.2024 07:49:35
Cross-Site Request Forgery (CSRF) vulnerability in Mike Martel WP Tiles plugin <= 1.1.2 versions.
6.5
CVE-2023-1426
- EPSS 0.36%
- Veröffentlicht 10.04.2023 14:15:09
- Zuletzt bearbeitet 11.02.2025 22:15:25
The WP Tiles WordPress plugin through 1.1.2 does not ensure that posts to be displayed are not draft/private, allowing any authenticated users, such as subscriber to retrieve the titles of draft and privates posts for example. AN attacker could also ...
5.4
CVE-2022-4827
- EPSS 0.15%
- Veröffentlicht 10.04.2023 14:15:08
- Zuletzt bearbeitet 23.04.2025 17:16:23
The WP Tiles WordPress plugin through 1.1.2 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform ...
1