N/A
2023-08-01< 1.1
WordPress Dewplayer Plugin <= 1.0 is vulnerable to Cross Site Scripting (XSS)
Minimum safe version
1.3
Update to 1.3 or later to address 4 fixable vulnerabilities
WordPress Dewplayer Plugin <= 1.0 is vulnerable to Cross Site Scripting (XSS)
WordPress Dewplayer Plugin <= 1.2 is vulnerable to Full Path Disclosure (FPD)
Dewplayer <= 1.2 and Advanced Dewplayer < 1.5 - Content Spoofing/Injection
Dewplayer <= 1.2 - Cross-Site Scripting
Dewplayer <= 1.2 - dewplayer.php Direct Request Path Disclosure Weakness
Dewplayer - dewplayer-vinyl.swf xml Parameter XML File H&ling XSS
Dewplayer - dewplayer-vinyl-en.swf xml Parameter XML File H&ling XSS
WordPress Dewplayer Plugin <= 1.2 - Full Path Disclosure
WordPress Dewplayer Plugin - Cross Site Scripting