ZeroHour

Vulnerabilities

3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2017-20094
A vulnerability, which was classified as problematic, has been found in NewStatPress Plugin 1.2.4.

A vulnerability, which was classified as problematic, has been found in NewStatPress Plugin 1.2.4. This issue affects some unknown processing. The manipulation leads to basic cross site scripting (Persistent). The attack may be initiated remotely. Upgrading to version 1.2.5 is able to address this issue. It is recommended to upgrade the affected component.

NVD description · AI analysis pending
5.4<1% PoC
  • newstatpress project newstatpress
CVE-2022-0206
The NewStatPress WordPress plugin before 1.3.6 does not properly escape the whatX parameters before outputting them back in attributes, leading to Reflected Cro

The NewStatPress WordPress plugin before 1.3.6 does not properly escape the whatX parameters before outputting them back in attributes, leading to Reflected Cross-Site Scripting issues

NVD description · AI analysis pending
6.11% PoC
  • newstatpress project newstatpress
CVE-2017-18575
The newstatpress plugin before 1.2.5 for WordPress has multiple stored XSS issues.

The newstatpress plugin before 1.2.5 for WordPress has multiple stored XSS issues.

NVD description · AI analysis pending
6.1<1%
  • newstatpress project newstatpress