Show filters
14 Total Results
Displaying 11-14 of 14
Sort by:
Attacker Value
Unknown

CVE-2021-34652

Disclosure Date: August 13, 2021 (last updated February 23, 2025)
The Media Usage WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the id parameter in the ~/mmu_admin.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 0.0.4.
Attacker Value
Unknown

CVE-2021-36850

Disclosure Date: April 08, 2021 (last updated February 23, 2025)
Cross-Site Request Forgery (CSRF) vulnerability in WordPress Media File Renamer – Auto & Manual Rename plugin (versions <= 5.1.9). Affected parameters "post_title", "filename", "lock". This allows changing the uploaded media title, media file name, and media locking state.
Attacker Value
Unknown

CVE-2018-20983

Disclosure Date: August 22, 2019 (last updated November 27, 2024)
The wp-retina-2x plugin before 5.2.3 for WordPress has XSS.
0
Attacker Value
Unknown

CVE-2018-0511

Disclosure Date: February 01, 2018 (last updated November 26, 2024)
Cross-site scripting vulnerability in WP Retina 2x prior to version 5.2.2 allows an attacker to inject arbitrary web script or HTML via unspecified vectors.
0