cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forscroll-triggered-animations scroll-triggered-animations

Direction: ascending
Jun 07, 2024

Animator – Scroll Triggered Animations # cf0d6ce4149212cae4de5df9898160e72ee42fbb

Date
Nov 09, 2023
Research Description
Animator &#8211; Scroll Triggered Animations [scroll-triggered-animations] < 3.0.11 WordPress Animator Plugin <= 3.0.9 is vulnerable to Broken Access Control No patched version available. Elliot discovered and reported this Broken Access Control vulnerability in WordPress Animator Plugin. A broken access control issue refers to a missing authorization, authentication or nonce token check in a function that could lead to an unprivileged user to executing a certain higher privileged action. This vulnerability has not been known to be fixed yet.
Affected versions
Min -, max -.
Status
vulnerable
Jun 10, 2024

Animator &#8211; Scroll Triggered Animations # CVE-2023-47689

CVE, Research URL

CVE-2023-47689

Date
Jan 02, 2025
Research Description
Missing Authorization vulnerability in Toast Plugins Animator allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Animator: from n/a through 3.0.10.
Affected versions
Min -, max -.
Status
vulnerable
Oct 19, 2024

Animator &#8211; Scroll Triggered Animations # CVE-2024-49308

CVE, Research URL

CVE-2024-49308

Date
Oct 18, 2024
Research Description
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Toast Plugins Animator allows Reflected XSS.This issue affects Animator: from n/a through 3.0.11.
Affected versions
Min -, max -.
Status
vulnerable
Jul 18, 2025

Animator &#8211; Scroll Triggered Animations # CVE-2025-54039

CVE, Research URL

CVE-2025-54039

Date
Jul 16, 2025
Research Description
Cross-Site Request Forgery (CSRF) vulnerability in Toast Plugins Animator allows Cross Site Request Forgery. This issue affects Animator: from n/a through 3.0.16.
Affected versions
Min -, max -.
Status
vulnerable