VYPR

Image Source Control

by Imagesourcecontrol

Source repositories

CVEs (3)

  • CVE-2023-52187MedJan 27, 2024
    risk 0.34cvss 5.3epss 0.00

    Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Thomas Maier Image Source Control Lite – Show Image Credits and Captions.This issue affects Image Source Control Lite – Show Image Credits and Captions: from n/a through 2.17.0.

  • CVE-2024-13515MedJan 18, 2025
    risk 0.33cvss 6.1epss 0.00

    The Image Source Control Lite – Show Image Credits and Captions plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'path' parameter in all versions up to, and including, 2.28.0 due to insufficient input sanitization and output escaping. This makes it…

  • CVE-2021-24781MedNov 1, 2021
    risk 0.28cvss 4.3epss 0.01

    The Image Source Control WordPress plugin before 2.3.1 allows users with a role as low as Contributor to change arbitrary post meta fields of arbitrary posts (even those they should not be able to edit)