Curtain Project maintains a narrowly scoped product focused on web-based functionality, with observed vulnerabilities centered on cross-site scripting and related input-handling weaknesses in web page generation. Current severity, exploitation, and exposure counts are shown in the live-statistics panel alongside this summary.
The number and severity of CVEs published that impact products developed by Curtain Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-1558MEDIUM The Curtain WordPress plugin through 1.0.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scri | May 23, 2022 | 4.8 | 16 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Curtain Project.
Media articles that mention a CVE ID that affects a product developed by Curtain Project — matched by CVE ID, not by vendor name.