CVE-2026-25366
Woody Code Snippets – Insert PHP, CSS, JS, and Header/Footer Scripts
Minimum safe version
2.7.2
Update to 2.7.2 or later to address 14 fixable vulnerabilities
CVE-2024-3105
CVE-2024-35751
CVE-2020-36759
CVE-2021-4342
Woody Code Snippets < 2.4.6 - Reflected Cross-Site Scripting
Various Affected Software (Various Versions) - Cross-Site Request Forgery Bypass
Woody code snippets <= 2.4.5 - Reflected Cross-Site Scripting
WordPress Woody Code Snippets plugin <= 2.4.5 - Reflected Cross-Site Scripting (XSS) vulnerability
WordPress Woody Ad Snippets plugin <= 2.2.4 - Unauthenticated stored Cross-Site Scripting (XSS) vulnerability
WordPress Woody ad snippets plugin <= 2.3.9 - Cross-Site Request Forgery (CSRF) vulnerability
Woody Ad Snippets <= 2.2.5 - Arbitrary Post Deletion
CVE-2019-15858
WordPress Woody Ad Snippets plugin <= 2.2.7 - Authenticated Reflected Cross-Site Scripting (XSS) vulnerability