Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2022-29406: WordPress Team Manager

Multiple Authenticated (contributor or higher user role) Stored Cross-Site Scripting (XSS) vulnerabilities in DynamicWebLab’s WordPress Team Manager plugin <= 1.6.9 at WordPress.

CVE
#xss#vulnerability#web#wordpress#auth
  • Details
  • Reviews
  • Support
  • Development

This plugin has been closed as of June 14, 2022 and is not available for download. This closure is temporary, pending a full review.

Great plugin, and so easy to use. I have bought two but this one is much better. Buddy

Great work here, Maidul. My only criticism is that I could not change the size of the images without upsetting ALL images in the entire site!

After trying many others that almost work it is great to have this working straight away. I like the sort order option for team members. I really like the option of different social media links for each staff members, rather than some which have every one the same. I have ‘fancy’ bullet points in the content section now, so reading is easy 5 Stars for me.

Love the functionality of the plugin - very flexible/modular. Have been using now for 1.5 years - not a single problem, will go easily from upgrade to upgrade, nothing brakes, no settings get lost. One afterthought: it is relatively hard to optimize team-list performance. Image sizes fully depend on WP media library settings and in many cases sub-optimal image files may be delivered. Hope 4.4+ versions of Wordpress will improve that.

Read all 22 reviews

“WordPress Team Manager” is open source software. The following people have contributed to this plugin.

Contributors

  • Maidul

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907