Vulnerabilidades en PixelYourSite

16 resultados
CVE-2026-7049HIGHPixelYourSite Pro <= 12.5.0.1 - Unauthenticated Blind Server-Side Request Forgery via 'urls[]' ParameterEPSS 0.6%CVE-2026-7637CRITICALBoost <= 2.0.3 - Unauthenticated PHP Object Injection via STYXKEY-BOOST_USER_LOCATION CookieEPSS 0.6%CVE-2023-2584MEDIUMPixelYourSite <= 9.3.6 and PixelYourSite Pro <= 9.6.1 - Authenticated (Administrator+) Stored Cross-Site ScriptingEPSS 0.5%CVE-2024-7870MEDIUMPixelYourSite – Your smart PIXEL (TAG) & API Manager <= 9.7.1 and PixelYourSite PRO <= 10.4.2 - Unauthenticated Information Exposure and Log DeletionEPSS 0.4%CVE-2025-14280MEDIUMPixelYourSite <= 11.1.5 - Sensitive Information Exposure via Log FileEPSS 0.4%CVE-2026-9010HIGHBoost <= 2.0.3 - Unauthenticated Blind SQL Injection via Multiple ParametersEPSS 0.4%CVE-2025-0769MEDIUMPixelYourSite 10.1.1.1 - Insecure deserializationEPSS 0.4%CVE-2026-1841HIGHPixelYourSite <= 11.2.0 - Unauthenticated Stored Cross-Site ScriptingEPSS 0.3%CVE-2026-1844HIGHPixelYourSite PRO <= 12.4.0.2 - Unauthenticated Stored Cross-Site ScriptingEPSS 0.3%CVE-2026-7613HIGHCost of Goods by PixelYourSite <= 1.2.12 - Unauthenticated Stored Cross-Site Scripting via Cost of Goods ImportEPSS 0.3%CVE-2023-49824MEDIUMWordPress Product Catalog Feed by PixelYourSite Plugin <= 2.1.1 is vulnerable to Cross Site Request Forgery (CSRF)EPSS 0.2%CVE-2024-37447MEDIUMWordPress PixelYourSite plugin <= 9.6.1.1 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2023-22700MEDIUMWordPress PixelYourSite – Your smart PIXEL (TAG) Manager Plugin <= 9.3.0 is vulnerable to Cross Site Request Forgery (CSRF)EPSS 0.2%CVE-2025-22300MEDIUMWordPress PixelYourSite plugin <= 10.0.1.2 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%CVE-2025-10588MEDIUMPixelYourSite <= 11.1.2 – Cross-Site Request Forgery to GDPR Options ModificationEPSS 0.1%CVE-2026-27072HIGHWordPress PixelYourSite – Your smart PIXEL (TAG) Manager plugin <= 11.2.0.1 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.1%