VendorsYlefebvrelink_libraryany version
Vulnerabilities

Ylefebvre Yannick Lefebvre (ylefebvre) Link Library any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

15CVEs
CVE-2024-24875
WordPress Link Library Plugin <= 7.5.13 is vulnerable to Cross Site Request Forgery (CSRF)
Published 2024-02-12 · Modified
8.8EPSS 0.002
CVE-2021-25093
Link Library < 7.2.8 - Unauthenticated Arbitrary Links Deletion
Published 2022-02-01 · Modified
7.5EPSS 0.012
CVE-2024-29123
WordPress Link Library plugin <= 7.6 - Reflected Cross Site Scripting (XSS) vulnerability
Published 2024-03-19 · Modified
7.1EPSS 0.004
CVE-2024-24879
WordPress Link Library Plugin <= 7.5.13 is vulnerable to Cross Site Scripting (XSS)
Published 2024-02-08 · Modified
7.1EPSS 0.004
CVE-2024-38711
WordPress Link Library plugin <= 7.7.1 - Reflected Cross Site Scripting (XSS) vulnerability
Published 2024-07-20 · Analyzed
7.1EPSS 0.004
CVE-2024-35687
WordPress Link Library plugin <= 7.6.3 - Reflected Cross-Site Scripting (XSS) vulnerability
Published 2024-06-08 · Modified
7.1EPSS 0.003
CVE-2021-25092
Link Library < 7.2.8 - Library Settings Reset via CSRF
Published 2022-02-01 · Modified
6.5EPSS 0.005
CVE-2024-1559
Link Library <= 7.6 - Unauthenticated Stored Cross-Site Scripting
Published 2024-02-20 · Modified
6.5EPSS 0.004
CVE-2025-46237
WordPress Link Library plugin <= 7.8 - Cross Site Scripting (XSS) Vulnerability
Published 2025-04-22 · Modified
6.5EPSS 0.002
CVE-2026-18197
Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Link Library allows Cross-Site Scripting (XSS). This issue affects Link Library: before 7.9.4.
Published 2026-07-29 · Analyzed
6.4EPSS 0.003
CVE-2024-4281
Link Library <= 7.6.11 - Authenticated (Contributor+) Stored Cross-Site Scripting via link-library Shortcode
Published 2024-05-08 · Modified
6.4EPSS 0.003
CVE-2021-25091
Link Library < 7.2.9 - Reflected Cross-Site Scripting
Published 2022-02-01 · Modified
6.1EPSS 0.008
CVE-2024-2325
Link Library <= 7.6.6 - Reflected Cross-Site Scripting
Published 2024-04-09 · Modified
6.1EPSS 0.004
CVE-2024-13404
Link Library <= 7.7.2 - Reflected Cross-Site Scripting
Published 2025-01-21 · Analyzed
6.1EPSS 0.003
CVE-2022-4199
Link Library < 7.4.1 - Admin+ Stored XSS
Published 2023-01-16 · Modified
4.8EPSS 0.005