Known Vulnerabilities for products from Hermit Project
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Hermit Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-29413 json | Cross-Site Request Forgery (CSRF) leading to Stored Cross-Site Scripting (XSS) in Mufeng's Hermit 音乐播放器 plugin <= 3... | 6.1 - MEDIUM | 2022-04-28 | 2023-11-07 |
| CVE-2022-29412 json | Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Hermit 音乐播放器 plugin <= 3.1.6 on WordPress allow attac... | 5.4 - MEDIUM | 2022-04-28 | 2023-11-07 |
| CVE-2022-29411 json | SQL Injection (SQLi) vulnerability in Mufeng's Hermit 音乐播放器 plugin <= 3.1.6 on WordPress allows attackers to execut... | 9.8 - CRITICAL | 2022-04-28 | 2023-11-07 |
| CVE-2022-29410 json | Authenticated SQL Injection (SQLi) vulnerability in Mufeng's Hermit 音乐播放器 plugin <= 3.1.6 on WordPress allows attac... | 8.8 - HIGH | 2022-04-28 | 2023-11-07 |