Product
plugin planet user submitted posts
6 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-5002
CVE-2023-45603
CVE-2023-4779
CVE-2023-4308
CVE-2019-25138
CVE-2016-11001
< 20240516
The User Submitted Posts WordPress plugin before 20240516 does not sanitise and escape some of its settings, which could allow hi
<= 20230902
Unrestricted Upload of File with Dangerous Type vulnerability in Jeff Starr User Submitted Posts - Enable Users to Submit Posts fr
<= 20230811
The User Submitted Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's [usp_gallery] shortcod
< 20230811
The User Submitted Posts plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘user-submitted-content’ pa
<= 20190312
The User Submitted Posts plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the u
< 20160215
The user-submitted-posts plugin before 20160215 for WordPress has XSS via the user-submitted-content field.