dachande663 CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

dachande663 vulnerability overview

Aggregates CVE and security vulnerability intelligence across all dachande663-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk csrf and vendor risk cross-site scripting; exposure may include vendor impact session compromise in vendor surface software deployment contexts.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-3631 The HL Twitter WordPress plugin through 2014.1.18 does not have CSRF check when unlinking twitter accounts, which could allow attackers to make logged in admins perform such actions via a CSRF attack [email protected] 4.3 0.28% 2024-05-15 2025-05-15
CVE-2024-3630 The HL Twitter WordPress plugin through 2014.1.18 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup) [email protected] 5.4 0.46% 2024-05-15 2025-05-15
CVE-2024-3629 The HL Twitter WordPress plugin through 2014.1.18 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack [email protected] 2.4 0.19% 2024-05-15 2025-05-15
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence