CVE-2024-12770
- EPSS 0.03%
- Veröffentlicht 15.05.2025 20:15:37
- Zuletzt bearbeitet 10.06.2025 12:55:45
The WP ULike WordPress plugin before 4.7.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed ...
CVE-2024-7879
- EPSS 0.08%
- Veröffentlicht 06.11.2024 06:15:03
- Zuletzt bearbeitet 11.04.2025 15:06:02
The WP ULike WordPress plugin before 4.7.5 does not sanitise and escape some of its settings, which could allow high privilege users such as editors to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed
CVE-2024-7878
- EPSS 0.18%
- Veröffentlicht 25.09.2024 06:15:05
- Zuletzt bearbeitet 02.10.2024 17:41:44
The WP ULike WordPress plugin before 4.7.4 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed ...
CVE-2024-6792
- EPSS 0.08%
- Veröffentlicht 06.09.2024 06:15:02
- Zuletzt bearbeitet 11.04.2025 15:12:26
The WP ULike WordPress plugin before 4.7.2.1 does not properly sanitize user display names when rendering on a public page.
CVE-2024-6094
- EPSS 0.09%
- Veröffentlicht 24.07.2024 06:15:01
- Zuletzt bearbeitet 21.11.2024 09:48:56
The WP ULike WordPress plugin before 4.7.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed ...
CVE-2023-45640
- EPSS 0.18%
- Veröffentlicht 25.10.2023 18:17:33
- Zuletzt bearbeitet 21.11.2024 08:27:07
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in TechnoWich WP ULike – Most Advanced WordPress Marketing Toolkit plugin <= 4.6.8 versions.
CVE-2022-45842
- EPSS 0.09%
- Veröffentlicht 30.11.2022 13:15:11
- Zuletzt bearbeitet 14.03.2025 14:54:47
Unauth. Race Condition vulnerability in WP ULike Plugin <= 4.6.4 on WordPress allows attackers to increase/decrease rating scores.