Filtered by vendor Ezoic Subscriptions
Total 4 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2026-18789 2 Ezoic, Wordpress 2 Ezoic, Wordpress 2026-08-12 7.5 High
The Ezoic WordPress plugin before 2.23.1 does not properly restrict access to some of its content export functionality, allowing unauthenticated attackers to trigger a server-side export of the site's database, including user password hashes and password reset tokens, as well as to persistently change some of its settings.
CVE-2023-25476 1 Ezoic 1 Ampedsense 2024-11-21 7.1 High
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Ezoic AmpedSense – AdSense Split Tester plugin <= 4.68 versions.
CVE-2022-41315 1 Ezoic 1 Ezoic 2024-11-21 4.8 Medium
Auth. Stored Cross-Site Scripting (XSS) vulnerability in Ezoic plugin <= 2.8.8 on WordPress.
CVE-2022-41132 1 Ezoic 1 Ezoic 2024-11-21 6.1 Medium
Unauthenticated Plugin Settings Change Leading To Stored XSS Vulnerability in Ezoic plugin <= 2.8.8 on WordPress.