Iseard maintains the Kudos Donations product, a web-based fundraising application, with the durable signal centered on input-handling vulnerabilities characteristic of web-facing donation platforms. The recurring exposure centers on cross-site scripting weaknesses in page generation, reflecting the intersection of user-supplied content and dynamic HTML rendering inherent to donation collection interfaces. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Iseard over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-11685MEDIUM The `Kudos Donations – Easy donations and payments with Mollie` plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of `add_query_arg` without appro | Nov 28, 2024 | 6.1 | 18 | NO | NO |
CVE-2024-11684MEDIUM The Kudos Donations – Easy donations and payments with Mollie plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in all versions up to, and | Nov 28, 2024 | 6.1 | 18 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Iseard.
Media articles that mention a CVE ID that affects a product developed by Iseard — matched by CVE ID, not by vendor name.