Known Vulnerabilities for products from Insert Pages Project
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Insert Pages Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-4483 json | The Insert Pages WordPress plugin before 3.7.5 does not validate and escape some of its shortcode attributes before outputtin... | 5.4 - MEDIUM | 2023-01-16 | 2023-11-07 |
| CVE-2021-24851 json | The Insert Pages WordPress plugin before 3.7.0 allows users with a role as low as Contributor to access content and metadata ... | 4.3 - MEDIUM | 2021-11-17 | 2022-08-30 |
| CVE-2021-24850 json | The Insert Pages WordPress plugin before 3.7.0 adds a shortcode that prints out other pages' content and custom fields. It ca... | 5.4 - MEDIUM | 2021-11-17 | 2021-11-18 |
| CVE-2017-18586 json | The insert-pages plugin before 3.2.4 for WordPress has directory traversal via custom template paths. | 9.1 - CRITICAL | 2019-08-22 | 2019-08-29 |
Known software with vulnerabilities from Insert Pages Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Insert Pages Project | Insert Pages | 0.5 |