本ページは themeist i_recommend_this に影響する公開済み CVE(NVD の CPE 経由で関連付け)を列挙します。各行に深刻度指標・概要・公開日が含まれます。
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2023-28696 | Cross-Site Request Forgery (CSRF) vulnerability in Harish Chouhan, Themeist I Recommend This allows Cross Site Request Forgery.This issue affects I Recommend This: from n/a through 3.9.0. | [email protected] | 4.3 | 0.32% | 2023-11-12 | 2026-06-17 |
| CVE-2023-23673 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Harish Chouhan, Themeist I Recommend This plugin <= 3.8.3 versions. | [email protected] | 5.9 | 0.39% | 2023-05-16 | 2026-06-17 |
| CVE-2014-125099 | A vulnerability has been found in I Recommend This Plugin up to 3.7.2 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality of the file dot-irecommendthis.php. The manipulation leads to sql injection. The attack can be launched remotely. Upgrading to version 3.7.3 is able to address this issue. The identifier of the patch is 058b3ef5c7577bf557557904a53ecc8599b13649. It is recommended to upgrade the affected component. The identifier VDB-226309 was as | [email protected] | 6.3 | 0.72% | 2023-04-20 | 2026-06-16 |
| CVE-2014-10376 | The i-recommend-this plugin before 3.7.3 for WordPress has SQL injection. | [email protected] | 9.8 | 1.78% | 2019-08-16 | 2026-06-16 |