Mlfactory develops a GDPR-compliance plugin for WordPress that is scoped narrowly around data-protection and consent management functionality. The observed vulnerability profile centers on cross-site scripting weaknesses typical of web-application input handling in this product class, and live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mlfactory over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-24294MEDIUM The dsgvoaio_write_log AJAX action of the DSGVO All in one for WP WordPress plugin before 4.0 did not sanitise or escape some POST parameter submitted before outputting them in the | May 24, 2021 | 6.1 | 20 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mlfactory.
Media articles that mention a CVE ID that affects a product developed by Mlfactory — matched by CVE ID, not by vendor name.