Motopress
Motopress Getwid: vulnerabilidades y CVE
Motopress Getwid tiene 12 vulnerabilidades publicadas, 1 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE12
Últimos 12 meses1
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-5924 | Media (6.4) | 0.26% | — | 23 sept 2026 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Google Maps block's 'customStyle' attribute in all versions up to, and including, 2.1.3. This is due to the use of… |
| CVE-2025-58252 | Media (4.3) | 0.27% | — | 22 sept 2025 | Insertion of Sensitive Information Into Sent Data vulnerability in jetmonsters Getwid getwid allows Retrieve Embedded Sensitive Data.This issue affects Getwid: from n/a through <= 2.1.2. |
| CVE-2024-10872 | Media (5.4) | 0.31% | — | 20 nov 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `template-post-custom-field` block in all versions up to, and including, 2.0.12 due to insufficient input… |
| CVE-2024-6491 | Media (4.3) | 0.38% | — | 20 jul 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the mailchimp_api_key_manage function in all versions up to, and including,… |
| CVE-2024-6489 | Media (5.3) | 0.30% | — | 20 jul 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the get_google_api_key function in all versions up to, and including, 2.0.10.… |
| CVE-2024-3588 | Media (5.4) | 0.53% | — | 2 may 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdown block in all versions up to, and including, 2.0.7 due to insufficient input sanitization and… |
| CVE-2024-1948 | Media (5.4) | 0.40% | — | 9 abr 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the block content in all versions up to, and including, 2.0.5 due to insufficient input sanitization and output… |
| CVE-2023-6963 | Media (5.3) | 0.53% | — | 5 feb 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to CAPTCHA Bypass in versions up to, and including, 2.0.4. This makes it possible for unauthenticated attackers to bypass the Captcha Verification of the… |
| CVE-2023-6959 | Media (4.3) | 0.42% | — | 5 feb 2024 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the recaptcha_api_key_manage function in all versions up to, and including,… |
| CVE-2023-6042 | Alta (7.5) | 0.56% | — | 8 ene 2024 | Any unauthenticated user may send e-mail from the site with any title or content to the admin |
| CVE-2023-1910 | Media (4.3) | 0.52% | — | 9 jun 2023 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to unauthorized modification of data due to an insufficient capability check on the get_remote_templates function in versions up to, and including, 1.8.3.… |
| CVE-2023-1895 | Crítica (9.6) | 0.61% | — | 9 jun 2023 | The Getwid – Gutenberg Blocks plugin for WordPress is vulnerable to Server Side Request Forgery via the get_remote_content REST API endpoint in versions up to, and including, 1.8.3. This can allow authenticated… |