biplob018 Vulnerabilities and Affected Products
Vulnerabilities associated with Shortcode Addons.
Products
Clear product- Image Hover Effects Ultimate (Image Gallery, Effects, Lightbox, Comparison or Magnifier)3 vulnerabilities
- Image Hover Effects for Elementor with Lightbox and Flipbox2 vulnerabilities
- Shortcode Addons2 vulnerabilities
- Shortcode Addons (WordPress plugin)2 vulnerabilities
- Image Hover Effects - Caption Hover with Carousel1 vulnerability
- Image Hover Effects Ultimate1 vulnerability
- Team Showcase and Slider – Team Members Builder1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-37121MEDIUM | WordPress Shortcode Addons plugin <= 3.2.5 - Cross Site Scripting (XSS) vulnerabilityImproper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in biplob018 Shortcode Addons allows Stored XSS.This issue affects Shortcode Addons: from n/a through 3.2.5. CWE-79Jul 22, 2024 | CVSS5.9v3.1 | EPSS0.276% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-31114CRITICAL | WordPress Shortcode Addons <= 3.2.5 - Arbitrary File Upload vulnerabilityUnrestricted Upload of File with Dangerous Type vulnerability in biplob018 Shortcode Addons.This issue affects Shortcode Addons: from n/a through 3.2.5. CWE-434Mar 31, 2024 | CVSS9.1v3.1 | EPSS1.35% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |