VYPR

Notibar

by WordPress

Source repositories

CVEs (3)

  • CVE-2024-11012MedDec 13, 2024
    risk 0.34cvss 6.3epss 0.00

    The The Notibar – Notification Bar for WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution via njt_nofi_text AJAX action in all versions up to, and including, 2.1.4. This is due to the software allowing users to execute an action that does not…

  • CVE-2025-1672MedMar 6, 2025
    risk 0.29cvss 5.5epss 0.00

    The Notibar – Notification Bar for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 2.1.5 due to insufficient input sanitization and output escaping. This makes it possible for authenticated…

  • CVE-2024-54269MedDec 11, 2024
    risk 0.28cvss 4.3epss 0.00

    Missing Authorization vulnerability in Ninja Team Notibar notibar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Notibar: from n/a through <= 2.1.4.