📦 Embedpress

by Wpdeveloper

🔍 What is Embedpress?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-43328

HIGH CVSS 8.3 Aug 19, 2024

This vulnerability allows attackers to read arbitrary files on WordPress servers running the EmbedPress plugin through path traversal. Attackers can exploit improper path validation to include local P...

CVE-2024-11203

MEDIUM CVSS 6.4 Nov 28, 2024

This stored XSS vulnerability in the EmbedPress WordPress plugin allows authenticated attackers with Contributor-level access or higher to inject malicious scripts into web pages. When users visit com...

CVE-2023-51375

MEDIUM CVSS 4.3 Jun 21, 2024

This CVE describes a Missing Authorization vulnerability in the WordPress EmbedPress plugin that allows unauthorized users to perform actions they shouldn't be able to. It affects all WordPress sites ...

CVE-2024-1565

MEDIUM CVSS 6.4 Jun 13, 2024

This vulnerability allows authenticated WordPress users with contributor-level permissions or higher to inject malicious scripts via the PDF Widget URL in the EmbedPress plugin. The scripts are stored...

CVE-2024-31274

MEDIUM CVSS 5.3 Jun 9, 2024

This CVE describes a Missing Authorization vulnerability in the WordPress EmbedPress plugin that allows unauthorized users to perform actions intended only for authenticated users. It affects all Word...

CVE-2024-5571

MEDIUM CVSS 6.4 Jun 5, 2024

This vulnerability allows authenticated WordPress users with contributor-level access or higher to inject malicious scripts into web pages using the EmbedPress plugin's PDF widget. The scripts execute...