coffee-code plugin_oficial CVE 漏洞(2)

CVE 数: 2 CPE versions: View versions table

摘要

本页列出影响 coffee-code plugin_oficial 的已公开 CVE 漏洞(通过 NVD CPE 关联)。每行包含严重程度评分、摘要与发布日期,便于识别与分析安全问题。

显示 122 CVE 数
«« 第一页 « 上一页 第 1 / 1 页 下一页 »
CVE 摘要 来源 最高 CVSS EPSS % 公开时间 更新时间
CVE-2025-1303 The Plugin Oficial WordPress plugin through 1.7.3 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against only unauthenticated users. [email protected] 6.1 0.53% 2025-05-15 2025-08-01
CVE-2025-1289 The Plugin Oficial WordPress plugin through 1.7.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup). [email protected] 4.8 0.17% 2025-05-15 2025-08-01
«« 第一页 « 上一页 第 1 / 1 页 下一页 »
cvelogic Threat Intelligence