Magneticlab's vulnerability footprint centers on its Homepage Pop-up product, with observed issues rooted in client-side web input handling: cross-site request forgery and cross-site scripting weaknesses that are typical of browser-based components. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Magneticlab over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-44585HIGH Cross-Site Request Forgery (CSRF) vulnerability in Magneticlab Sàrl Homepage Pop-up plugin <= 1.2.5 versions. | Feb 2, 2023 | 8.8 | 27 | NO | NO |
CVE-2022-43480MEDIUM Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Magneticlab Sàrl Homepage Pop-up plugin <= 1.2.5 versions. | Apr 16, 2023 | 4.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Magneticlab.
Media articles that mention a CVE ID that affects a product developed by Magneticlab — matched by CVE ID, not by vendor name.