Skip to content

Known CVE

WordPress Securimage-WP-Fixed <=3.5.4 - Cross-Site Scripting

WordPress Securimage-WP-Fixed plugin 3.5.4 and prior contains a cross-site scripting vulnerability due to the use of $_SERVER['PHP_SELF'] in the ~/securimage-wp.php file, which allows attackers to inject arbitrary web scripts.

CVE-2021-34640

Medium2021CVSS 6.1CWE-79

cve2021 · wpscan · wordpress · wp-plugin · authenticated · securimage-wp-fixed_project · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website