CVE-2024-54266
- EPSS 0.26%
- Veröffentlicht 13.12.2024 15:15:30
- Zuletzt bearbeitet 07.01.2025 18:05:59
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ImageRecycle ImageRecycle pdf & image compression allows Reflected XSS.This issue affects ImageRecycle pdf & image compression: from n/a through 3.1...
CVE-2024-6631
- EPSS 0.13%
- Veröffentlicht 24.08.2024 03:15:04
- Zuletzt bearbeitet 12.09.2024 20:39:22
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on several AJAX actions in all versions up to, and including, 3.1.14. This makes it possible for authen...
CVE-2024-8120
- EPSS 0.18%
- Veröffentlicht 24.08.2024 03:15:04
- Zuletzt bearbeitet 17.09.2024 20:07:46
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.14. This is due to missing or incorrect nonce validation on several functions in the class/class-image...
CVE-2024-1336
- EPSS 0.15%
- Veröffentlicht 29.02.2024 01:43:48
- Zuletzt bearbeitet 31.12.2024 16:51:04
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.13. This is due to missing or incorrect nonce validation on the optimizeAllOn function. This makes it ...
CVE-2024-1338
- EPSS 0.11%
- Veröffentlicht 29.02.2024 01:43:48
- Zuletzt bearbeitet 31.12.2024 16:51:41
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.13. This is due to missing or incorrect nonce validation on the stopOptimizeAll function. This makes i...
CVE-2024-1339
- EPSS 0.11%
- Veröffentlicht 29.02.2024 01:43:48
- Zuletzt bearbeitet 31.12.2024 16:52:24
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.13. This is due to missing or incorrect nonce validation on the reinitialize function. This makes it p...
CVE-2024-1334
- EPSS 0.11%
- Veröffentlicht 29.02.2024 01:43:47
- Zuletzt bearbeitet 31.12.2024 16:48:40
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.13. This is due to missing or incorrect nonce validation on the enableOptimization function. This make...
CVE-2024-1335
- EPSS 0.11%
- Veröffentlicht 29.02.2024 01:43:47
- Zuletzt bearbeitet 31.12.2024 16:50:11
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.13. This is due to missing or incorrect nonce validation on the disableOptimization function. This mak...
CVE-2024-1089
- EPSS 0.24%
- Veröffentlicht 29.02.2024 01:43:39
- Zuletzt bearbeitet 27.12.2024 15:26:53
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the optimizeAllOn function in all versions up to, and including, 3.1.13. This makes it possible for ...
CVE-2024-1090
- EPSS 0.31%
- Veröffentlicht 29.02.2024 01:43:39
- Zuletzt bearbeitet 27.12.2024 15:41:41
The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the stopOptimizeAll function in all versions up to, and including, 3.1.13. This makes it possible fo...