📦 Getwid

by Motopress

🔍 What is Getwid?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-1895

HIGH CVSS 8.5 Jun 9, 2023

This vulnerability in the Getwid WordPress plugin allows authenticated attackers with subscriber-level permissions or higher to perform Server-Side Request Forgery (SSRF) attacks. Attackers can make a...

CVE-2024-10872

MEDIUM CVSS 6.4 Nov 20, 2024

The Getwid WordPress plugin has a stored XSS vulnerability that allows authenticated attackers with Contributor access or higher to inject malicious scripts into website pages. These scripts execute w...

CVE-2024-6489

MEDIUM CVSS 5.3 Jul 20, 2024

The Getwid WordPress plugin has a missing capability check vulnerability that allows authenticated users with Contributor-level access or higher to modify the MailChimp API key. This affects all versi...

CVE-2024-3588

MEDIUM CVSS 6.4 May 2, 2024

The Getwid WordPress plugin's Countdown block has a stored XSS vulnerability allowing authenticated attackers with contributor-level access or higher to inject malicious scripts into pages. These scri...