Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
6.4
CVE-2026-9729
- EPSS 0.33%
- Veröffentlicht 23.07.2026 06:52:33
- Zuletzt bearbeitet 23.07.2026 16:17:55
The Webpushr Push Notifications plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'webpushr_notification_title' and 'webpushr_notification_body' parameters in versions up to, and including, 4.39.0. This is due to insufficient ...
5.4
CVE-2023-5620
- EPSS 0.43%
- Veröffentlicht 27.11.2023 17:15:09
- Zuletzt bearbeitet 21.11.2024 08:42:08
The Web Push Notifications WordPress plugin before 4.35.0 does not prevent visitors on the site from changing some of the plugin options, some of which may be used to conduct Stored XSS attacks.
8.8
CVE-2023-35041
- EPSS 0.32%
- Veröffentlicht 13.11.2023 03:15:08
- Zuletzt bearbeitet 21.11.2024 08:07:52
Cross-Site Request Forgery (CSRF) vulnerability leading to Local File Inclusion (LF) in Webpushr Web Push Notifications Web Push Notifications – Webpushr plugin <= 4.34.0 versions.
1