VendorsDigital Zoom Studiozoomsoundsany version
Vulnerabilities

Digital Zoom Studio Digitalzoomstudio ZoomSounds any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

9CVEs
CVE-2021-4449
ZoomSounds <= 5.96 - Unauthenticated Arbitrary File Upload
Published 2024-10-16 · Modified
9.8EPSS 0.054
CVE-2015-9471
The dzs-zoomsounds plugin through 2.0 for WordPress has admin/upload.php arbitrary file upload.
Published 2019-10-10 · Modified
9.8EPSS 0.040
CVE-2024-13777
ZoomSounds - WordPress Wave Audio Player with Playlist <= 6.91 - Unauthenticated PHP Object Injection
Published 2025-03-05 · Analyzed
9.8EPSS 0.006
CVE-2025-47568
WordPress ZoomSounds plugin <= 6.91 - PHP Object Injection vulnerability
Published 2025-05-23 · Modified
9.8EPSS 0.005
CVE-2021-4457
ZoomSounds < 6.05 - Unauthenticated Arbitrary File Upload
Published 2025-06-25 · Analyzed
9.1EPSS 0.004
CVE-2024-13776
ZoomSounds - WordPress Wave Audio Player with Playlist <= 6.91 - Missing Authorization to Authenticated (Subscriber+) Limited Options Update and Settings Manipulation
Published 2025-04-05 · Analyzed
8.1EPSS 0.003
CVE-2021-39316
ZoomSounds <= 6.45 Unauthenticated Directory Traversal and Sensitive Information Dislosure
Published 2021-08-31 · Modified
7.51 PoCEPSS 0.658
CVE-2025-3431
ZoomSounds - WordPress Wave Audio Player with Playlist <= 6.91 - Unauthenticated Arbitrary File Download
Published 2025-04-08 · Analyzed
7.5EPSS 0.004
CVE-2025-0839
ZoomSounds <= 6.91 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
Published 2025-04-05 · Analyzed
6.4EPSS 0.002