Clickbank operates an affiliate marketing platform where third-party vendors advertise products through distributed ads, creating a web-facing application environment vulnerable to input-handling issues. The observed vulnerability pattern centers on cross-site scripting weaknesses in the ad-generation and display functionality, typical of platforms handling user-supplied advertising content. Current exploitation activity and severity counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Clickbank over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-18011MEDIUM The MyCBGenie Affiliate Ads for Clickbank Products plugin through 1.6 for WordPress has XSS via the text_ads_ajax.php border_color parameter. | Jan 1, 2018 | 6.1 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Clickbank.
Media articles that mention a CVE ID that affects a product developed by Clickbank — matched by CVE ID, not by vendor name.