Igniteup
Getigniteup · 5 CVEs
CVE-2022-0898
MEDIUM
IgniteUp <= 3.4.1 - Admin+ Stored Cross-Site Scripting
May 9, 2022
CVE-2019-17237
HIGH
includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows CSRF.
Nov 12, 2019
CVE-2019-17236
MEDIUM
includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress is vulnerable to stored XSS.
Nov 12, 2019
CVE-2019-17235
MEDIUM
includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows information disclosure.
Nov 12, 2019
CVE-2019-17234
HIGH
includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows unauthenticated arbitrar…
Nov 12, 2019
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2022-0898 | IgniteUp <= 3.4.1 - Admin+ Stored Cross-Site Scripting | MEDIUM | 0.60% | May 9, 2022 |
| CVE-2019-17237 | includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows CSRF. | HIGH | 0.74% | Nov 12, 2019 |
| CVE-2019-17236 | includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress is vulnerable to stored XSS. | MEDIUM | 0.97% | Nov 12, 2019 |
| CVE-2019-17235 | includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows information disclosure. | MEDIUM | 1.40% | Nov 12, 2019 |
| CVE-2019-17234 | includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows unauthenticated arbitrary file deletion. | HIGH | 3.25% | Nov 12, 2019 |
Showing 1 to 5 of 5 CVEs