Gwolle Guestbook Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 4
    Known Exploited: 0
    1
    Critical Level Threats
    0
    High Level Threats
    2
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2017-20089

    Gwolle Guestbook Plugin cross site scriting

    Last Modified: Apr 15, 2025
    Published: Jun 23, 2022

    CVE-2021-24980

    Gwolle Guestbook < 4.2.0 - Reflected Cross-Site Scripting

    Last Modified: Nov 21, 2024
    Published: Dec 27, 2021

    CVE-2018-17884

    XSS exists in admin/gb-dashboard-widget.php in the Gwolle Guestbook (gwolle-gb) plugin before 2.5.4 for WordPress via the PATH_INFO to wp-admin/index.php

    Last Modified: Nov 21, 2024
    Published: Oct 02, 2018

    CVE-2015-8351

    PHP remote file inclusion vulnerability in the Gwolle Guestbook plugin before 1.5.4 for WordPress, when allow_url_include is enabled, allows remote authenticated users to execute arbitrary PHP code via a URL in the abspath parameter to frontend/captcha/ajaxresponse.php. NOTE: this can also be leveraged to include and execute arbitrary local files via directory traversal sequences regardless of whether allow_url_include is enabled.

    Last Modified: Apr 20, 2025
    Published: Sep 11, 2017
    Items Per Page
    Gwolle_Guestbook_Project Vulnerabilities & Security CVEs | CVE-DB