Skip to main content

Vendor/product archive

geomywp / geo_my_wordpress CVEs

Beta · best-effort

4 CVEs tagged to geomywp / geo_my_wordpress1 Critical, 1 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2024-6330

Published Aug 19, 2024

The GEO my WP WordPress plugin before 4.5.0.2 does not prevent unauthenticated attackers from including arbitrary files in PHP's execution context, which leads to Remote Code Exec…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2023-52134

Published Dec 31, 2023

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eyal Fitoussi GEO my WordPress.This issue affects GEO my WordPress: from n/a…

CVSS 7.6 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2023-5467

Published Oct 10, 2023

The GEO my WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 4.0 due to insufficient input sanitization…

CVSS 6.4 · Medium
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1