Wpza maintains a focused WordPress plugin portfolio centered on the Amp Img Shortcode component, which provides image-handling functionality for WordPress sites. The vendor's vulnerability signals center on cross-site scripting risks arising from improper input neutralization in web page generation contexts, a characteristic weakness for plugins that process and render user-supplied or dynamic content. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wpza over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-51576MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpza AMP Img Shortcode amp-img-shortcode allows Stored XSS.This issue affects | Nov 10, 2024 | 5.4 | 18 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wpza.
Media articles that mention a CVE ID that affects a product developed by Wpza — matched by CVE ID, not by vendor name.