Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
polylang plugin project polylang vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2014-4855
Cross-site scripting (XSS) vulnerability in the Polylang plugin prior to 1.5.2 for WordPress allows remote malicious users to inject arbitrary web script or HTML via vectors related to a user description. NOTE: some of these details are obtained from third party information.
Polylang Plugin Project Polylang
Polylang Plugin Project Polylang 1.5
NA
CVE-2022-4169
The Theme and plugin translation for Polylang is vulnerable to authorization bypass in versions up to, and including, 3.2.16 due to missing capability checks in the process_polylang_theme_translation_wp_loaded() function. This makes it possible for unauthenticated malicious users...
Theme And Plugin Translation For Polylang Project Theme And Plugin Translation For Polylang
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30051
remote
CVE-2024-27954
CVE-2023-51483
CVE-2023-47782
SSRF
CVE-2024-24715
CVE-2023-52424
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started