Ezoic operates a web-optimization and monetization platform serving publishers and content sites, with its vulnerability profile centered on cross-site scripting weaknesses in its core platform and related products such as AmpedSense. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ezoic over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-41132MEDIUM Unauthenticated Plugin Settings Change Leading To Stored XSS Vulnerability in Ezoic plugin <= 2.8.8 on WordPress. | Nov 17, 2022 | 6.1 | 21 | NO | NO |
CVE-2023-25476MEDIUM Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Ezoic AmpedSense – AdSense Split Tester plugin <= 4.68 versions. | Oct 18, 2023 | 6.1 | 19 | NO | NO |
CVE-2022-41315MEDIUM Auth. Stored Cross-Site Scripting (XSS) vulnerability in Ezoic plugin <= 2.8.8 on WordPress. | Nov 17, 2022 | 4.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ezoic.
Media articles that mention a CVE ID that affects a product developed by Ezoic — matched by CVE ID, not by vendor name.