Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total2
Critical0
High1
Medium1
Reset
Showing 1-2 of 2 records
Threat Entry Updated 2024-11-21

CVE-2022-1672 - Insights From Google Pagespeed Plugin

The Insights from Google PageSpeed WordPress plugin before 4.0.7 does not verify for CSRF before doing various actions such as deleting Custom URLs, which could allow attackers to make a logged in admin perform such actions via CSRF attacks

PLUGIN Insights From Google Pagespeed

CVE-2022-1672

HIGH CVSS 8.8 2022-07-17
Threat Entry Updated 2024-11-21

CVE-2022-0431 - Insights From Google Pagespeed Plugin

The Insights from Google PageSpeed WordPress plugin before 4.0.4 does not sanitise and escape various parameters before outputting them back in attributes in the plugin's settings dashboard, leading to Reflected Cross-Site Scripting

PLUGIN Insights From Google Pagespeed

CVE-2022-0431

MEDIUM CVSS 6.1 2022-04-04
Scroll to top