cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forsimple-sticky-footer simple-sticky-footer

Direction: ascending
Jun 07, 2024

Simple Sticky Footer # CVE-2014-9454

CVE, Research URL

CVE-2014-9454

Application

Simple Sticky Footer

Date
Jan 03, 2015
Research Description
Multiple cross-site request forgery (CSRF) vulnerabilities in the Simple Sticky Footer plugin before 1.3.3 for WordPress allow remote attackers to hijack the authentication of administrators for requests that (1) change plugin settings via unspecified vectors or conduct cross-site scripting (XSS) attacks via the (2) simple_sf_width or (3) simple_sf_style parameter in the simple-simple-sticky-footer page to wp-admin/themes.php.
Affected versions
Min -, max -.
Status
vulnerable
Jun 24, 2025

Simple Sticky Footer # CVE-2025-50019

CVE, Research URL

CVE-2025-50019

Application

Simple Sticky Footer

Date
Jun 20, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Sandor Kovacs Simple Sticky Footer allows Stored XSS. This issue affects Simple Sticky Footer : from n/a through 1.3.5.
Affected versions
Min -, max -.
Status
vulnerable