Dsgvo-for-wp
Dsgvo-for-wp Dsgvo ALL IN ONE FOR WP: vulnerabilidades y CVE
Dsgvo-for-wp Dsgvo ALL IN ONE FOR WP tiene 4 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-13356 | Media (6.5) | 0.23% | — | 4 feb 2025 | The DSGVO All in one for WP plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.6. This is due to missing or incorrect nonce validation in the user_remove_form.php… |
| CVE-2024-43964 | Media (5.4) | 0.26% | — | 29 ago 2024 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Michael Leithold DSGVO All in one for WP allows Stored XSS.This issue affects DSGVO All in one for WP: from… |
| CVE-2024-27967 | Alta (8.8) | 0.23% | — | 11 abr 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Michael Leithold DSGVO All in one for WP.This issue affects DSGVO All in one for WP: from n/a through 4.3. |
| CVE-2022-2628 | Media (4.8) | 0.68% | — | 3 oct 2022 | The DSGVO All in one for WP WordPress plugin before 4.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when… |