Vulnerabilities > Godaddy

DATE CVE VULNERABILITY TITLE RISK
2024-08-29 CVE-2024-7132 Cross-site Scripting vulnerability in Godaddy Coblocks
The Page Builder Gutenberg Blocks WordPress plugin before 3.1.13 does not escape the content of post embed via one of its block, which could allow users with the capability to publish posts (editor and admin by default) to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)
network
low complexity
godaddy CWE-79
4.8
2021-01-27 CVE-2021-26276 Improper Control of Dynamically-Managed Code Resources vulnerability in Godaddy Node-Config-Shield 0.2.2
scripts/cli.js in the GoDaddy node-config-shield (aka Config Shield) package before 0.2.2 for Node.js calls eval when processing a set command.
network
low complexity
godaddy CWE-913
5.3
2019-08-21 CVE-2016-10903 Cross-Site Request Forgery (CSRF) vulnerability in Godaddy Email Marketing
The GoDaddy godaddy-email-marketing-sign-up-forms plugin before 1.1.3 for WordPress has CSRF.
network
low complexity
godaddy CWE-352
8.8