Hu Manity operates a focused product line centered on cookie-notice and compliance tooling for GDPR and CCPA regulations, addressing consent-management and data-handling disclosure requirements across web properties. The vendor's tracked vulnerability exposure reflects this narrowly scoped compliance-focused application domain. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Hu Manity over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-24400MEDIUM Auth. (contributor+) Cross-Site Scripting (XSS) vulnerability in Hu-manity.Co Cookie Notice & Compliance for GDPR / CCPA plugin <= 2.4.6 versions. | May 7, 2023 | 5.4 | 20 | NO | NO |
CVE-2023-0823MEDIUM The Cookie Notice & Compliance for GDPR / CCPA WordPress plugin before 2.4.7 does not validate and escape some of its shortcode attributes before outputting them back in a page/pos | Mar 27, 2023 | 5.4 | 18 | NO | NO |
CVE-2021-24569MEDIUM The Cookie Notice & Compliance for GDPR / CCPA WordPress plugin before 2.1.2 does not escape the value of its Button Text setting when outputting it in an attribute in the frontend | Sep 27, 2021 | 4.8 | 18 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Hu Manity.
Media articles that mention a CVE ID that affects a product developed by Hu Manity — matched by CVE ID, not by vendor name.