Filtered by vendor Sumo Subscriptions
Total 7 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-4323 1 Sumo 1 Google Analyticator 2023-11-07 7.2 High
The Analyticator WordPress plugin before 6.5.6 unserializes user input provided via the settings, which could allow high privilege users such as admin to perform PHP Object Injection when a suitable gadget is present
CVE-2022-3425 1 Sumo 1 Google Analyticator 2023-11-07 7.2 High
The Analyticator WordPress plugin before 6.5.6 unserializes user input provided via the settings, which could allow high-privilege users such as admin to perform PHP Object Injection when a suitable gadget is present.
CVE-2023-25033 1 Sumo 1 Social Share Boost 2023-10-10 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in Sumo Social Share Boost plugin <= 4.5 versions.
CVE-2023-25044 1 Sumo 1 Social Share Boost 2023-09-01 4.8 Medium
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Sumo Social Share Boost plugin <= 4.4 versions.
CVE-2023-23688 1 Sumo 1 Social Share Boost 2023-05-22 5.4 Medium
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Sumo Social Share Boost plugin <= 4.4 versions.
CVE-2009-5158 1 Sumo 1 Google Analyticator 2019-08-26 N/A
The google-analyticator plugin before 5.2.1 for WordPress has insufficient HTML sanitization for Google Analytics API text.
CVE-2015-4697 1 Sumo 1 Google Analyticator 2017-09-11 N/A
Cross-site request forgery (CSRF) vulnerability in Google Analyticator Wordpress Plugin before 6.4.9.3 rev @1183563.