machothemes Vulnerabilities and Affected Products
Vulnerabilities associated with CPO Companion.
Products
Clear product- Antreas1 vulnerability
- CPO Companion1 vulnerability
- image_photo_gallery_final_tiles_grid1 vulnerability
- MedZone Lite1 vulnerability
- NatureMag Lite1 vulnerability
- NewsMag1 vulnerability
- Regina Lite1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-33916MEDIUM | WordPress CPO Companion plugin <= 1.1.0 - Cross Site Scripting (XSS) vulnerabilityImproper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MachoThemes CPO Companion allows Stored XSS.This issue affects CPO Companion: from n/a through 1.1.0. CWE-79May 3, 2024 | CVSS6.5v3.1 | EPSS0.315% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |