| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-0659 | Easy Digital Downloads <= 3.2.6 - Authenticated(Shop Manager+) Stored Cross-Site Scripting via variable pricing options | smub | Easy Digital Downloads – eCommerce Payments and Subscriptions made easy | Medium | 5.5 | 2024-02-05 21:21:36 | Deep Dive |
| CVE-2023-51684 | WordPress Easy Digital Downloads Plugin <= 3.2.5 is vulnerable to Cross Site Scripting (XSS) | Easy Digital Downloads | Easy Digital Downloads – Sell Digital Files (eCommerce Store & Payments Made Easy) | Medium | 6.5 | 2024-02-01 10:34:37 | Deep Dive |
| CVE-2023-30869 | WordPress Easy Digital Downloads Plugin 3.1-3.1.1.4.1 is vulnerable to Privilege Escalation | Easy Digital Downloads | Easy Digital Downloads | Critical | 9.8 | 2023-05-02 09:46:36 | Deep Dive |
| CVE-2023-0380 | Easy Digital Downloads < 3.1.0.5 - Contributor+ Stored XSS | Unknown | Easy Digital Downloads | 中危 | - | 2023-02-21 08:50:36 | Deep Dive |
| CVE-2023-23489 | WordPress Plugin The Easy Digital Downloads SQL注入漏洞 | - | Easy Digital Downloads WordPress Plugin | 超危 | - | 2023-01-20 00:00:00 | Deep Dive |
| CVE-2022-3600 | Easy Digital Downloads < 3.1.0.2 - Unauthenticated CSV Injection | Unknown | Easy Digital Downloads | 超危 | - | 2022-11-21 00:00:00 | Deep Dive |
| CVE-2022-2387 | Easy Digital Downloads < 3.0 - Arbitrary Post Deletion via CSRF | Unknown | Easy Digital Downloads – Simple eCommerce for Selling Digital Files | 中危 | - | 2022-11-07 00:00:00 | Deep Dive |
| CVE-2022-33900 | WordPress Easy Digital Downloads plugin <= 3.0.1 - PHP Object Injection vulnerability | Easy Digital Downloads | Easy Digital Downloads | Medium | 4.1 | 2022-08-22 14:48:37 | Deep Dive |
| CVE-2022-0707 | Easy Digital Downloads < 2.11.6 - Arbitrary Payment Note Insertion via CSRF | Unknown | Easy Digital Downloads – Simple eCommerce for Selling Digital Files | 中危 | - | 2022-04-18 17:10:31 | Deep Dive |
| CVE-2022-0706 | Easy Digital Downloads < 2.11.6 - Admin+ Stored Cross-Site Scripting | Unknown | Easy Digital Downloads – Simple eCommerce for Selling Digital Files | 中危 | - | 2022-04-18 17:10:29 | Deep Dive |
| CVE-2021-39354 | Easy Digital Downloads <= 2.11.2 Authenticated Reflected Cross-Site Scripting | Easy Digital Downloads | Easy Digital Downloads | Medium | 4.8 | 2021-10-21 19:38:58 | Deep Dive |