Asset Cleanup is a modestly represented vendor with a narrowly scoped footprint centered on its Page Speed Booster project. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Asset Cleanup over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-24983MEDIUM The Asset CleanUp: Page Speed Booster WordPress plugin before 1.3.8.5 does not sanitise and escape POSted parameters sent to the wpassetcleanup_fetch_active_plugins_icons AJAX acti | Feb 1, 2022 | 6.1 | 21 | NO | NO |
CVE-2021-24937MEDIUM The Asset CleanUp: Page Speed Booster WordPress plugin before 1.3.8.5 does not escape the wpacu_selected_sub_tab_area parameter before outputting it back in an attribute in an admi | Feb 1, 2022 | 6.1 | 21 | NO | NO |
CVE-2021-36899MEDIUM Authenticated (admin+) Reflected Cross-Site Scripting (XSS) vulnerability in Gabe Livan's Asset CleanUp: Page Speed Booster plugin <= 1.3.8.4 at WordPress. | Oct 11, 2022 | 4.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Asset Cleanup.
Media articles that mention a CVE ID that affects a product developed by Asset Cleanup — matched by CVE ID, not by vendor name.