The Eu Cookie Law Project maintains a focused plugin or library for managing cookie compliance, with vulnerability exposure centered on its core product through web application input-handling weaknesses, particularly cross-site scripting in page generation contexts. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Eu Cookie Law Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-3811MEDIUM The EU Cookie Law for GDPR/CCPA WordPress plugin through 3.1.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform St | Jan 23, 2023 | 4.8 | 19 | NO | NO |
CVE-2019-16522MEDIUM The eu-cookie-law plugin through 3.0.6 for WordPress (aka EU Cookie Law (GDPR)) is susceptible to Stored XSS due to improper encoding of several configuration options in the admin | Oct 16, 2019 | 4.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Eu Cookie Law Project.
Media articles that mention a CVE ID that affects a product developed by Eu Cookie Law Project — matched by CVE ID, not by vendor name.