Known Vulnerabilities for products from Newstatpress Project
Listed below are 10 of the newest known vulnerabilities associated with the vendor "Newstatpress Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-0206 json | The NewStatPress WordPress plugin before 1.3.6 does not properly escape the whatX parameters before outputting them back in a... | 6.1 - MEDIUM | 2022-02-14 | 2022-02-22 |
| CVE-2017-20094 json | A vulnerability, which was classified as problematic, has been found in NewStatPress Plugin 1.2.4. This issue affects some un... | 5.4 - MEDIUM | 2022-06-24 | 2022-06-30 |
| CVE-2017-18575 json | The newstatpress plugin before 1.2.5 for WordPress has multiple stored XSS issues. | 6.1 - MEDIUM | 2019-08-22 | 2019-08-26 |
| CVE-2015-9315 json | The newstatpress plugin before 1.0.1 for WordPress has SQL injection. | 9.8 - CRITICAL | 2019-08-14 | 2019-08-16 |
| CVE-2015-9314 json | The newstatpress plugin before 1.0.4 for WordPress has XSS related to the Referer header. | 6.1 - MEDIUM | 2019-08-14 | 2019-08-16 |
| CVE-2015-9313 json | The newstatpress plugin before 1.0.5 for WordPress has SQL injection related to an IMG element. | 9.8 - CRITICAL | 2019-08-14 | 2019-08-16 |
| CVE-2015-9312 json | The newstatpress plugin before 1.0.5 for WordPress has XSS related to an IMG element. | 6.1 - MEDIUM | 2019-08-14 | 2019-08-16 |
| CVE-2015-9311 json | The newstatpress plugin before 1.0.6 for WordPress has reflected XSS. | 6.1 - MEDIUM | 2019-08-14 | 2019-08-16 |
| CVE-2015-4063 json | Cross-site scripting (XSS) vulnerability in includes/nsp_search.php in the NewStatPress plugin before 0.9.9 for WordPress all... | Not Provided | 2015-05-27 | 2026-05-06 |
| CVE-2015-4062 json | SQL injection vulnerability in includes/nsp_search.php in the NewStatPress plugin before 0.9.9 for WordPress allows remote au... | Not Provided | 2015-05-27 | 2026-05-06 |
Known software with vulnerabilities from Newstatpress Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Newstatpress Project | Newstatpress | 0.1.0 |