Themoneytizer is a niche monetization platform with a focused product footprint centered on its primary application, where the vulnerability signal concentrates on authorization and request-handling deficiencies such as improper access control, cross-site request forgery, and missing authorization checks. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Themoneytizer over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-6966HIGH The The Moneytizer plugin for WordPress is vulnerable to unauthorized access of data, modification of data, and loss of data due to a missing capability check on multiple AJAX func | Jun 6, 2024 | 8.1 | 24 | NO | NO |
CVE-2023-6968MEDIUM The The Moneytizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 9.6.3. This is due to missing or incorrect nonce validatio | Jun 6, 2024 | 5.4 | 18 | NO | NO |
CVE-2024-27990MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in The Moneytizer allows Stored XSS.This issue affects The Moneytizer: from n/a t | Apr 11, 2024 | 6.5 | 18 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Themoneytizer.
Media articles that mention a CVE ID that affects a product developed by Themoneytizer — matched by CVE ID, not by vendor name.