Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Nitstorm

#20106of 53,624
12.9Total CVSS
Vulnerabilities · 2
Medium
2
PT-2018-9683
6.1
2018-04-14
WordPress · Wordpress · CVE-2018-10102
Name of the Vulnerable Software and Affected Versions: WordPress versions prior to 4.9.5 Description: The issue arises from the version string not being properly escaped in the get the generator function, potentially leading to XSS in a generator tag. Recommendations: For versions prior to 4.9.5, update to version 4.9.5 or later to resolve the issue.
PT-2017-6792
6.8
2017-09-07
Google · Google Analyticator Wordpress Plugin · CVE-2015-4697
**Name of the Vulnerable Software and Affected Versions** Google Analyticator Wordpress Plugin versions prior to 6.4.9.3 rev @1183563 **Description** The issue is related to a cross-site request forgery (CSRF) vulnerability. This type of vulnerability allows an attacker to trick a user into performing unintended actions on a web application that the user is authenticated to. **Recommendations** For versions prior to 6.4.9.3 rev @1183563, update to version 6.4.9.3 rev @1183563 or later to resolve the issue.