Google

Site Kit

2 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.1%
  • Veröffentlicht 11.09.2026 18:12:14
  • Zuletzt bearbeitet 11.09.2026 21:17:02

Unauthenticated Cross Site Request Forgery (CSRF) in Site Kit by Google <= 1.186.0 versions.

  • EPSS 0.25%
  • Veröffentlicht 07.07.2023 12:15:09
  • Zuletzt bearbeitet 21.11.2024 05:39:41

The Site Kit by Google plugin for WordPress is vulnerable to Sensitive Information Disclosure in versions up to, and including, 1.8.0 This is due to the lack of capability checks on the admin_enqueue_scripts action which displays the connection key. ...