Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total2
Critical0
High0
Medium2
Reset
Showing 1-2 of 2 records
Threat Entry Updated 2024-11-21

CVE-2022-1334 - Wp Youtube Live Plugin

The WP YouTube Live WordPress plugin before 1.8.3 does not validate, sanitise and escape various of its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

PLUGIN Wp Youtube Live

CVE-2022-1334

MEDIUM CVSS 4.8 2022-05-16
Threat Entry Updated 2025-05-05

CVE-2022-1187 - Wp Youtube Live Plugin

The WordPress WP YouTube Live Plugin is vulnerable to Reflected Cross-Site Scripting via POST data found in the ~/inc/admin.php file which allows unauthenticated attackers to inject arbitrary web scripts in versions up to, and including, 1.7.21.

PLUGIN Wp Youtube Live

CVE-2022-1187

MEDIUM CVSS 6.1 2022-04-19
Scroll to top