Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
gtranslate gtranslate vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-4502
The Translate WordPress with GTranslate WordPress plugin prior to 3.0.4 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (f...
Gtranslate Translate Wordpress With Gtranslate
6.8
CVSSv2
CVE-2022-0770
The Translate WordPress with GTranslate WordPress plugin prior to 2.9.9 does not have CSRF check in some files, and write debug data such as user's cookies in a publicly accessible file if a specific parameter is used when requesting them. Combining those two issues, an atta...
Gtranslate Translate Wordpress With Gtranslate
2.6
CVSSv2
CVE-2021-25103
The Translate WordPress with GTranslate WordPress plugin prior to 2.9.7 does not sanitise and escape the body parameter in the url_addon/gtranslate-email.php file before outputting it back in the page, leading to a Reflected Cross-Site Scripting issue. Note: exploitation of the i...
Gtranslate Translate Wordpress With Gtranslate
3.5
CVSSv2
CVE-2021-24594
The Translate WordPress – Google Language Translator WordPress plugin prior to 6.0.12 does not sanitise and escape some of its settings before outputting it in various pages, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html...
Gtranslate Google Language Translator
4.3
CVSSv2
CVE-2021-34630
In the Pro and Enterprise versions of GTranslate < 2.8.65, the gtranslate_request_uri_var function runs at the top of all pages and echoes out the contents of $_SERVER['REQUEST_URI']. Although this uses addslashes, and most modern browsers automatically URLencode req...
Gtranslate Gtranslate
4.3
CVSSv2
CVE-2020-11930
The GTranslate plugin prior to 2.8.52 for WordPress has Reflected XSS via a crafted link. This requires use of the hreflang tags feature within a sub-domain or sub-directory paid option.
Gtranslate Translate Wordpress With Gtranslate
4.3
CVSSv2
CVE-2016-10870
The google-language-translator plugin prior to 5.0.06 for WordPress has XSS.
Gtranslate Google Language Translator
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
cross-site request forgery
unauthorized
CVE-2024-33925
reflected XSS
CVE-2023-51580
CVE-2023-51579
CVE-2015-2051
CVE-2023-51609
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started