EasySqueezePage [EasySqueezePage] < 1.1
unknown
Update plugin.
MustLive discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Easy Squeeze Page Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, and other HTML payloads into your website which will be executed when guests visit your...
- Affected:
- up to 1.1
- Fixed in:
- 1.1
- Disclosed:
- May 15, 2023
EasySqueezePage [EasySqueezePage] < 1.1 (closed)
unknown
Because of this vulnerability, the attackers can inject arbitrary JavaScript or HTML code.
Update plugin.
- Affected:
- up to 1.1
- Fixed in:
- 1.1
- Disclosed:
- May 15, 2015
VideoJS (Various Versions) - Cross-Site Scripting
medium
The S3 Video, EasySqueezePage, External "Video for Everybody", Videopack, and 1player plugins for WordPress are vulnerable to Reflected Cross-Site Scripting due to inclusion of a vulnerable version of VideoJS in various versions due to insufficient input sanitization and output escaping. This makes it possible for unau...
- CVSS:
- 6.1
- Affected:
- up to *
- Fix:
- No patched version reported
- Disclosed:
- May 14, 2015
EasySqueezePage [EasySqueezePage] <= 1.0.0 (unfixed + closed)
unknown
- Affected:
- up to 1.0.0
- Fix:
- No patched version reported
Protect your WordPress site
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free
← Back to the vulnerability database