Skip to main content

Vendor archive

edmonsoft CVEs

Beta · best-effort

8 CVEs tagged to vendor edmonsoft0 Critical, 1 High, 6 Medium, 1 Low, 0 Unrated.

CVE-2024-13639

Published Feb 13, 2025

The Read More & Accordion plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the expmDeleteData() function in al…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-2017

Published Jun 6, 2024

The Countdown, Coming Soon, Maintenance – Countdown & Clock plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the conditionsRow and sw…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-3392

Published Oct 16, 2023

The Read More & Accordion WordPress plugin before 3.2.7 unserializes user input provided via the settings, which could allow high-privilege users such as admin to perform PHP Obje…

CVSS 7.2 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2022-29422

Published May 6, 2022

Multiple Authenticated (admin+) Persistent Cross-Site Scripting (XSS) vulnerabilities in Adam Skaat's Countdown & Clock plugin <= 2.3.2 at WordPress via &ycd-countdown-width, &ycd…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-29421

Published May 6, 2022

Reflected Cross-Site Scripting (XSS) vulnerability in Adam Skaat's Countdown & Clock plugin on WordPress via &ycd_type vulnerable parameter.

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-29420

Published May 6, 2022

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Adam Skaat Countdown & Clock (WordPress plugin) countdown-builder allo…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1