CVE-2025-67549
- EPSS 0.05%
- Veröffentlicht 09.12.2025 14:14:06
- Zuletzt bearbeitet 20.01.2026 15:19:20
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bobbingwide oik oik allows DOM-Based XSS.This issue affects oik: from n/a through <= 4.15.3.
CVE-2025-54670
- EPSS 0.03%
- Veröffentlicht 20.08.2025 08:02:53
- Zuletzt bearbeitet 20.08.2025 14:39:07
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bobbingwide oik allows Reflected XSS. This issue affects oik: from n/a through 4.15.2.
CVE-2025-54671
- EPSS 0.02%
- Veröffentlicht 14.08.2025 10:34:39
- Zuletzt bearbeitet 14.08.2025 13:11:53
Cross-Site Request Forgery (CSRF) vulnerability in bobbingwide oik allows Cross Site Request Forgery. This issue affects oik: from n/a through 4.15.2.
CVE-2025-49241
- EPSS 0.06%
- Veröffentlicht 06.06.2025 12:53:34
- Zuletzt bearbeitet 06.06.2025 14:06:58
Missing Authorization vulnerability in bobbingwide oik allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects oik: from n/a through 4.15.1.
CVE-2024-43356
- EPSS 0.12%
- Veröffentlicht 26.08.2024 21:15:29
- Zuletzt bearbeitet 27.08.2024 15:54:45
Cross-Site Request Forgery (CSRF) vulnerability in bobbingwide.This issue affects oik: from n/a through 4.12.0.
CVE-2024-6391
- EPSS 0.36%
- Veröffentlicht 09.07.2024 12:15:21
- Zuletzt bearbeitet 21.11.2024 09:49:33
The oik plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bw_button shortcode in all versions up to, and including, 4.10.3 due to insufficient input sanitization and output escaping on user supplied attributes. This m...
CVE-2024-2256
- EPSS 0.1%
- Veröffentlicht 14.03.2024 21:15:51
- Zuletzt bearbeitet 23.01.2025 19:19:01
The oik plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes such as bw_contact_button and bw_button shortcodes in all versions up to, and including, 4.10.0 due to insufficient input sanitization and output es...