Swifty Page Manager Project develops a web-based page management application with a modest but notable vulnerability footprint that concentrates around web-tier input-handling and request-validation issues, particularly cross-site scripting and cross-site request forgery. These weakness classes reflect the product's role as a user-facing web interface where proper input sanitization and request authentication are essential to security posture. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Swifty Page Manager Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-0088HIGH The Swifty Page Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.0.1. This is due to missing or incorrect nonce validati | Jan 5, 2023 | 8.8 | 28 | NO | NO |
CVE-2023-0087MEDIUM The Swifty Page Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘spm_plugin_options_page_tree_max_width’ parameter in versions up to, and includin | Jan 5, 2023 | 4.8 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Swifty Page Manager Project.
Media articles that mention a CVE ID that affects a product developed by Swifty Page Manager Project — matched by CVE ID, not by vendor name.