Skip to main content

Vendor/product archive

wow-company / button_generator CVEs

Beta · best-effort

5 CVEs tagged to wow-company / button_generator0 Critical, 1 High, 3 Medium, 1 Low, 0 Unrated.

CVE-2024-3471

Published May 2, 2024

The Button Generator WordPress plugin before 3.0 does not have CSRF check in place when bulk deleting, which could allow attackers to make a logged in admin delete buttons via a…

CVSS 3.4 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-49155

Published Dec 18, 2023

Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Button Generator – easily Button Builder.This issue affects Button Generator – easily Button Builder: from n/a throu…

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-25443

Published Jul 11, 2023

Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Button Generator – easily Button Builder plugin <= 2.3.5 versions.

CVSS 4.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-2362

Published Jun 12, 2023

The Float menu WordPress plugin before 5.0.2, Bubble Menu WordPress plugin before 3.0.4, Button Generator WordPress plugin before 2.3.5, Calculator Builder WordPress plugin before…

CVSS 6.1 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2021-25052

Published Jan 10, 2022

The Button Generator WordPress plugin before 2.3.3 within the wow-company admin menu page allows to include() arbitrary file with PHP extension (as well as with data:// or http://…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1