Aggregates CVE and security vulnerability intelligence across all wpcloudplugins-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.
Common weakness patterns include vendor risk cross-site scripting, with potential vendor impact session compromise across vendor surface production workloads and vendor surface software deployment use cases.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2021-42549 | Insufficient Input Validation in the search functionality of Wordpress plugin Lets-Box prior to 1.15.3 allows unauthenticated user to craft a reflected Cross-Site Scripting attack. | [email protected] | 4.7 | 0.78% | 2021-12-13 | 2024-11-21 |
| CVE-2021-42548 | Insufficient Input Validation in the search functionality of Wordpress plugin Share-one-Drive prior to 1.15.3 allows unauthenticated user to craft a reflected Cross-Site Scripting attack. | [email protected] | 4.7 | 0.78% | 2021-12-13 | 2024-11-21 |
| CVE-2021-42547 | Insufficient Input Validation in the search functionality of Wordpress plugin Out-of-the-Box prior to 1.20.3 allows unauthenticated user to craft a reflected Cross-Site Scripting attack. | [email protected] | 4.7 | 0.78% | 2021-12-13 | 2024-11-21 |
| CVE-2021-42546 | Insufficient Input Validation in the search functionality of Wordpress plugin Use-Your-Drive prior to 1.18.3 allows unauthenticated user to craft a reflected Cross-Site Scripting attack. | [email protected] | 4.7 | 0.78% | 2021-12-13 | 2024-11-21 |