codeermeneer companion_sitemap_generator CVE Vulnerabilities (3)

CVEs: 3 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting codeermeneer companion_sitemap_generator (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2023-1780 The Companion Sitemap Generator WordPress plugin before 4.5.3 does not sanitise and escape some parameters before outputting them back in pages, leading to Reflected Cross-Site Scripting which could be used against high privilege users such as admin. [email protected] 6.1 1.02% 2023-07-10 2024-11-21
CVE-2023-0066 The Companion Sitemap Generator WordPress plugin through 4.5.1.1 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks. [email protected] 5.4 0.44% 2023-03-13 2025-02-27
CVE-2019-15113 The companion-sitemap-generator plugin before 3.7.0 for WordPress has CSRF. [email protected] 8.8 0.67% 2019-08-16 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence