Known Vulnerabilities for Oembed by Oembed Project
Listed below are 1 of the newest known vulnerabilities associated with "Oembed" by "Oembed Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-12002 json | The Smash Balloon Social Photo Feed – Easy Social Feeds Plugin plugin for WordPress is vulnerable to Cross-Site Request For... | Not Provided | 2026-07-08 | 2026-07-08 |
| CVE-2024-25098 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pascal Bajorat PB oEmbe... | Not Provided | 2024-02-29 | 2026-04-28 |
| CVE-2023-52194 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Takayuki Miyauchi oEmbe... | Not Provided | 2024-02-01 | 2026-04-28 |
| CVE-2019-9870 json | plugin.js in the w8tcha oEmbed plugin before 2019-03-14 for CKEditor mishandles SCRIPT elements. | 9.8 - CRITICAL | 2019-03-21 | 2019-03-26 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Oembed Project | Oembed | 2019-03-14 |