Shooflysolutions develops a focused set of WordPress plugins and themes, including Simply Guest Author Name, Featured Image Pro Post Grid, and Simply Excerpts, which extend content management and display capabilities. The observed vulnerability pattern centers on cross-site scripting weaknesses arising from improper input neutralization in web page generation, a recurrent class in user-facing content plugins where output encoding practices are critical. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Shooflysolutions over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-32598MEDIUM Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in A. R. Jones Featured Image Pro Post Grid plugin <= 5.14 versions. | Aug 25, 2023 | 6.1 | 20 | NO | NO |
CVE-2023-5137MEDIUM The Simply Excerpts WordPress plugin through 1.4 does not sanitize and escape some fields in the plugin settings, which could allow high-privilege users such as an administrator to | Dec 4, 2023 | 4.8 | 17 | NO | NO |
CVE-2024-0254MEDIUM The (Simply) Guest Author Name plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's post meta in all versions up to, and including, 4.34 due to insuff | Feb 5, 2024 | 5.4 | 15 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Shooflysolutions.
Media articles that mention a CVE ID that affects a product developed by Shooflysolutions — matched by CVE ID, not by vendor name.