Skip to main content

Vendor/product archive

external_media_project / external_media CVEs

Beta · best-effort

2 CVEs tagged to external_media_project / external_media0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2022-3832

Published Dec 19, 2022

The External Media WordPress plugin before 1.0.36 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-S…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-24311

Published Jun 1, 2021

The wp_ajax_upload-remote-file AJAX action of the External Media WordPress plugin before 1.0.34 was vulnerable to arbitrary file uploads via any authenticated users.

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1