VendorsMotoPressgetwidall versions
Vulnerabilities

MotoPress Getwid

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

10CVEs
CVE-2023-1895
Getwid – Gutenberg Blocks <= 1.8.3 - Authenticated(Subscriber+) Server Side Request Forgery
Published 2023-06-09 · Modified
9.6EPSS 0.006
CVE-2023-6042
Getwid < 2.0.3 - Unauthenticated Arbitrary Email Sending to Admin
Published 2024-01-08 · Modified
7.5EPSS 0.006
CVE-2024-3588
Getwid – Gutenberg Blocks <= 2.0.7 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via 'Countdown'
Published 2024-05-02 · Modified
6.4EPSS 0.005
CVE-2024-1948
Getwid – Gutenberg Blocks <= 2.0.5 - Authenticated(Contributor+) Stored Cross-Site Scripting via Block Content
Published 2024-04-09 · Modified
6.4EPSS 0.004
CVE-2024-10872
Getwid – Gutenberg Blocks <= 2.0.12 - Authenticated (Contributor+) Stored Cross-Site Scripting
Published 2024-11-20 · Analyzed
6.4EPSS 0.003
CVE-2023-6963
Getwid – Gutenberg Blocks <= 2.0.4 - Captcha Bypass
Published 2024-02-05 · Modified
5.3EPSS 0.005
CVE-2024-6489
Getwid – Gutenberg Blocks <= 2.0.10 - Missing Authorization to Google API key update
Published 2024-07-20 · Analyzed
5.3EPSS 0.003
CVE-2023-1910
Getwid – Gutenberg Blocks <= 1.8.3 - Improper Authorization via get_remote_templates REST endpoint
Published 2023-06-09 · Modified
4.3EPSS 0.005
CVE-2023-6959
Getwid – Gutenberg Blocks <= 2.0.4 - Missing Authorization to Recaptcha API Key Modification
Published 2024-02-05 · Modified
4.3EPSS 0.004
CVE-2024-6491
Getwid – Gutenberg Blocks <= 2.0.10 - Missing Authentication to MailChimp API key update
Published 2024-07-20 · Analyzed
4.3EPSS 0.004