Terryl maintains a small portfolio of WordPress-focused plugins, specifically a Markdown GitHub integration tool and a security hardening utility, representing a modestly scoped but targeted surface for web application vulnerabilities. The durable signal across its disclosures centers on input-handling weaknesses characteristic of web plugins, including cross-site scripting and unrestricted file uploads, reflecting the parser and upload-handling demands of WordPress extension development. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Terryl over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-47846HIGH Unrestricted Upload of File with Dangerous Type vulnerability in Terry Lin WP Githuber MD.This issue affects WP Githuber MD: from n/a through 1.16.2. | Mar 26, 2024 | 7.2 | 20 | NO | NO |
CVE-2021-24124MEDIUM Unvalidated input and lack of output encoding in the WP Shieldon WordPress plugin, version 1.6.3 and below, leads to Unauthenticated Reflected Cross-Site Scripting (XSS) when the C | Mar 18, 2021 | 6.1 | 20 | NO | NO |
CVE-2024-52422MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Terry L. WP Githuber MD wp-githuber-md allows Stored XSS.This issue affects WP | Nov 18, 2024 | 5.4 | 17 | NO | NO |
CVE-2023-41423MEDIUM Cross Site Scripting vulnerability in WP Githuber MD plugin v.1.16.2 allows a remote attacker to execute arbitrary code via a crafted payload to the new article function. | Sep 12, 2023 | 5.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Terryl.
Media articles that mention a CVE ID that affects a product developed by Terryl — matched by CVE ID, not by vendor name.