Lucene search

K

Igniteup Security Vulnerabilities

cve
cve

CVE-2019-17234

includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows unauthenticated arbitrary file deletion.

7.5CVSS

7.8AI Score

0.001EPSS

2019-11-12 05:15 PM
57
cve
cve

CVE-2019-17235

includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows information disclosure.

5.3CVSS

5.8AI Score

0.001EPSS

2019-11-12 05:15 PM
53
cve
cve

CVE-2019-17236

includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress is vulnerable to stored XSS.

6.1CVSS

6.8AI Score

0.001EPSS

2019-11-12 05:15 PM
59
cve
cve

CVE-2019-17237

includes/class-coming-soon-creator.php in the igniteup plugin through 3.4 for WordPress allows CSRF.

8.8CVSS

8.7AI Score

0.001EPSS

2019-11-12 05:15 PM
50
cve
cve

CVE-2022-0898

The IgniteUp WordPress plugin through 3.4.1 does not sanitise and escape some fields when high privilege users don't have the unfiltered_html capability, which could lead to Stored Cross-Site Scripting issues

5.4CVSS

5.1AI Score

0.001EPSS

2022-05-09 05:15 PM
56
6