plugin

Jp Staticpagex Vulnerabilities

1 known security issue reported for the Jp Staticpagex WordPress plugin. Most recent disclosed May 23, 2022.

1 high

Running Jp Staticpagex on your site? Check whether your installed version is affected.

Scan your site free

Static Page eXtended <= 2.1 - Cross-Site Request Forgery

high

Due to missing checks the Static Page eXtended WordPress plugin through 2.1 is vulnerable to CSRF attacks which allows changing the plugin settings, including required user levels for specific features. This could also lead to Stored Cross-Site Scripting due to the lack of escaping in some of the settings

CVSS:
8.8
Affected:
up to 2.1
Fix:
No patched version reported
Disclosed:
May 23, 2022

CVE-2022-1763 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database