Vulnerabilities and security researches forcookiebot cookiebot
Direction: descendingJul 03, 2025
Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics # CVE-2025-53197
- CVE, Research URL
- Home page URL
-
Security reports for Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics
- Date
- Jun 27, 2025
- Research Description
- Cross-Site Request Forgery (CSRF) vulnerability in cookiebot Cookiebot allows Cross Site Request Forgery. This issue affects Cookiebot: from n/a through 4.5.8.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Mar 06, 2025
Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics # CVE-2025-1666
- CVE, Research URL
- Home page URL
-
Security reports for Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics
- Date
- Mar 06, 2025
- Research Description
- The Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the send_uninstall_survey() function in all versions up to, and including, 4.4.1. This makes it possible for authenticated attackers, with Subscriber-level access and above, to submit the uninstall survey on behalf of a website.
- Affected versions
-
Min -, max -.
- Status
-
vulnerable
Jun 07, 2024
Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics # 6082e79a28c37bc70662b5ec82c1fb8eccc2fbc4
- CVE, Research URL
- Home page URL
-
Security reports for Cookie banner plugin for WordPress – Cookiebot CMP by Usercentrics
- Date
- Sep 09, 2020
- Research Description
- Usercentrics Cookiebot – Cookie Banner & Privacy Compliance for GDPR/CCPA/Google Consent Mode [cookiebot] < 3.6.1 WordPress Cookiebot plugin <= 3.6.0 - Reflected Cross-Site Scripting (XSS) vulnerability Reflected Cross-Site Scripting (XSS) vulnerability found by Antony Garand (Sucuri) in WordPress Cookiebot plugin (versions <= 3.6.0).
- Affected versions
-
Min -, max -.
- Status
-
vulnerable