Pretty Url Project maintains a URL handling utility with a narrow, focused product scope. The observed vulnerability pattern centers on cross-site scripting arising from improper input neutralization during web page generation, a characteristic weakness in URL transformation and display contexts. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pretty Url Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-2009MEDIUM Plugin does not sanitize and escape the URL field in the Pretty Url WordPress plugin through 1.5.4 settings, which could allow high-privilege users to perform Stored Cross-Site Scr | May 15, 2023 | 4.8 | 28 | NO | YES |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pretty Url Project.
Media articles that mention a CVE ID that affects a product developed by Pretty Url Project — matched by CVE ID, not by vendor name.