Maennchen1's vulnerability profile centers on a narrowly scoped WordPress plugin portfolio, specifically variants of WPShopGermany developed for German e-commerce and legal service sites. The durable signal is cross-site scripting in web-page generation, a class endemic to template and form-handling contexts in plugin development. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Maennchen1 over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-39919MEDIUM Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in maennchen1.De wpShopGermany – Protected Shops plugin <= 2.0 versions. | Sep 4, 2023 | 4.8 | 16 | NO | NO |
CVE-2023-37993MEDIUM Auth. Stored Cross-Site Scripting (XSS) vulnerability in maennchen1.De wpShopGermany IT-RECHT KANZLEI plugin <= 1.7 versions. | Jul 27, 2023 | 4.8 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Maennchen1.
Media articles that mention a CVE ID that affects a product developed by Maennchen1 — matched by CVE ID, not by vendor name.