Known Vulnerabilities for products from Secondlinethemes
Listed below are 4 of the newest known vulnerabilities associated with the vendor "Secondlinethemes".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-23797 json | Cross-Site Request Forgery (CSRF) vulnerability in SecondLineThemes Auto YouTube Importer plugin <= 1.0.3 versions. | 8.8 - HIGH | 2023-05-22 | 2023-05-26 |
| CVE-2023-5308 json | The Podcast Subscribe Buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'podcast_subscribe' short... | Not Provided | 2023-10-20 | 2026-04-08 |
| CVE-2022-1023 json | The Podcast Importer SecondLine WordPress plugin before 1.3.8 does not sanitise and properly escape some imported data, which... | 7.2 - HIGH | 2022-04-11 | 2022-04-15 |
| CVE-2021-24743 json | The Podcast Subscribe Buttons WordPress plugin before 1.4.2 allows users with any role capable of editing or adding posts to ... | 5.4 - MEDIUM | 2021-10-18 | 2021-10-22 |