Eyal Fitoussi Geo My Wordpress vulnerabilities
5 known vulnerabilities affecting eyal_fitoussi/geo_my_wordpress.
Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH2MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2026-52715P2CRITICALCVSS 9.3≥ n/a, ≤ 4.5.52026-06-16
CVE-2026-52715 [CRITICAL] CWE-89 CVE-2026-52715: Unauthenticated SQL Injection in GEO my WordPress <= 4.5.5 versions.
Unauthenticated SQL Injection in GEO my WordPress <= 4.5.5 versions.
nvd
CVE-2023-52134P3HIGHCVSS 7.2≥ n/a, ≤ 4.0.22023-12-31
CVE-2023-52134 [HIGH] CWE-89 CVE-2023-52134: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability i
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eyal Fitoussi GEO my WordPress.This issue affects GEO my WordPress: from n/a through 4.0.2.
nvd
CVE-2024-54326P3MEDIUMCVSS 6.5≤ 4.5.0.42024-12-13
CVE-2024-54326 [MEDIUM] CWE-862 CVE-2024-54326: Missing Authorization vulnerability in Eyal Fitoussi GEO my WordPress geo-my-wp allows Exploiting In
Missing Authorization vulnerability in Eyal Fitoussi GEO my WordPress geo-my-wp allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects GEO my WordPress: from n/a through <= 4.5.0.4.
nvd
CVE-2024-47327P4HIGHCVSS 7.1≤ 4.5.0.32024-10-06
CVE-2024-47327 [HIGH] CWE-79 CVE-2024-47327: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability i
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Eyal Fitoussi GEO my WordPress geo-my-wp allows Reflected XSS.This issue affects GEO my WordPress: from n/a through <= 4.5.0.3.
nvd
CVE-2024-32097P4MEDIUMCVSS 5.4≥ n/a, ≤ 4.12024-04-15
CVE-2024-32097 [MEDIUM] CWE-352 CVE-2024-32097: Cross-Site Request Forgery (CSRF) vulnerability in Eyal Fitoussi GEO my WordPress.This issue affects
Cross-Site Request Forgery (CSRF) vulnerability in Eyal Fitoussi GEO my WordPress.This issue affects GEO my WordPress: from n/a through 4.1.
nvd