Technowich

Wp Ulike

7 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.03%
  • Published 15.05.2025 20:15:37
  • Last modified 10.06.2025 12:55:45

The WP ULike WordPress plugin before 4.7.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed ...

Exploit
  • EPSS 0.08%
  • Published 06.11.2024 06:15:03
  • Last modified 11.04.2025 15:06:02

The WP ULike WordPress plugin before 4.7.5 does not sanitise and escape some of its settings, which could allow high privilege users such as editors to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

Exploit
  • EPSS 0.18%
  • Published 25.09.2024 06:15:05
  • Last modified 02.10.2024 17:41:44

The WP ULike WordPress plugin before 4.7.4 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed ...

Exploit
  • EPSS 0.08%
  • Published 06.09.2024 06:15:02
  • Last modified 11.04.2025 15:12:26

The WP ULike WordPress plugin before 4.7.2.1 does not properly sanitize user display names when rendering on a public page.

Exploit
  • EPSS 0.09%
  • Published 24.07.2024 06:15:01
  • Last modified 21.11.2024 09:48:56

The WP ULike WordPress plugin before 4.7.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed ...

  • EPSS 0.18%
  • Published 25.10.2023 18:17:33
  • Last modified 21.11.2024 08:27:07

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in TechnoWich WP ULike – Most Advanced WordPress Marketing Toolkit plugin <= 4.6.8 versions.

  • EPSS 0.09%
  • Published 30.11.2022 13:15:11
  • Last modified 14.03.2025 14:54:47

Unauth. Race Condition vulnerability in WP ULike Plugin <= 4.6.4 on WordPress allows attackers to increase/decrease rating scores.