Maxbuttons Project develops a WordPress plugin focused on button creation and customization, a narrowly scoped product serving site administrators and content creators. The vulnerability record centers on cross-site scripting weaknesses in input handling and page generation, which is characteristic of WordPress plugins that process user-supplied content without sufficient output encoding. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Maxbuttons Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-2169MEDIUM Cross-site scripting vulnerability in MaxButtons prior to version 6.19 and MaxButtons Pro prior to version 6.19 allows remote attackers to inject arbitrary web script or HTML via u | May 22, 2017 | 6.1 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Maxbuttons Project.
Media articles that mention a CVE ID that affects a product developed by Maxbuttons Project — matched by CVE ID, not by vendor name.