ClimateClick: Climate Action for all

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in Freemius SDK 2.5.9 (1072 components affected)

    Fixed

    The Freemius SDK for WordPress is vulnerable to an attack known as Reflected Cross-Site Scripting. This attack is possible because of insufficient security measures in versions of the Freemius SDK up ...

    Read More
  • Input validation vulnerability in CO2ok: carbon offsetting for e-commerce 1.0.9.21

    Fixed

    The plugin CO2ok: carbon offsetting for e-commerce is not safe to use in versions up to 1.0.9.21. Attackers can insert malicious code into the pages of this plugin. This code will then be executed by...

    Read More
  • Access violation vulnerability in Freemius SDK (134 components affected)

    Fixed

    The Freemius SDK is a plugin used in WordPress websites. A security vulnerability was discovered in versions up to 2.2.3 which could allow users with subscriber-level permissions to change settings an...

    Read More
  • Access violation vulnerability in Freemius SDK (620 components affected)

    Fixed

    Freemius, a software development kit used by hundreds of WordPress plugin and theme developers, had a security vulnerability in its older versions (up to and including 2.4.2). This vulnerability could...

    Read More