- How many CVEs does wpplugins have?
- wpplugins has 89 published CVE records since 2014, including 3 in the last two years.
- How many wpplugins CVEs are in CISA KEV?
- None of wpplugins's CVEs are currently listed in CISA's Known Exploited Vulnerabilities catalog.
- Which wpplugins products have the most CVEs?
- The wpplugins products with the most published CVEs are hide_my_wp_ghost, contact-form-plugin, portfolio, facebook-button-plugin, broken-link-checker.
- What are the most common weakness types in wpplugins CVEs?
- wpplugins's CVEs most often map to these CWE weakness types: CWE-79 (Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')), CWE-352 (Cross-Site Request Forgery (CSRF)), CWE-89 (Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')), CWE-601 (URL Redirection to Untrusted Site ('Open Redirect')).
- Are there public exploits for wpplugins vulnerabilities?
- Yes — 5 of wpplugins's CVEs have a known public exploit.
- How many critical wpplugins vulnerabilities are there?
- wpplugins has 17 critical and 22 high-severity CVEs.
- What is the average severity of wpplugins CVEs?
- The average CVSS base score across wpplugins's scored CVEs is 7.2.