ANALYSIS · fdf13ebd· FINISHED 2026-06-13 · PATCHDIFF

yet-another-stars-rating3.4.113.4.15✓ COMPLETED

Files138
Vulnerable37
True positives0
CVE matched11
1 CVE article ready PatchLeaks generated full security writeups for the matched CVEs · one per CVE, with affected files linked
CVE-2024-13362
SCOPE
SORT
11 files · page 1/1
admin/settings/yasr-stats-page.php
AI: 1 vulnerabilities
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-13362
#%!d(float64=025)
vendor/dudo1985/wpdocgen/src/MarkdownTable.php
AI: 1 vulnerabilities
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-13362
#%!d(float64=075)
vendor/freemius/wordpress-sdk/includes/managers/class-fs-checkout-manager.php
AI: 1 vulnerabilities
CWE-20: Improper Input Validation CVE-2024-13362
#%!d(float64=097)
vendor/freemius/wordpress-sdk/includes/managers/class-fs-contact-form-manager.php
AI: 1 vulnerabilities
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-13362
#%!d(float64=099)
vendor/freemius/wordpress-sdk/templates/checkout.php
AI: 1 vulnerabilities
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-13362
#%!d(float64=117)
vendor/freemius/wordpress-sdk/templates/checkout/frame.php
AI: 1 vulnerabilities
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-13362
#%!d(float64=118)
vendor/freemius/wordpress-sdk/templates/checkout/process-redirect.php
AI: 1 vulnerabilities
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-13362
#%!d(float64=119)
vendor/freemius/wordpress-sdk/templates/connect.php
AI: 1 vulnerabilities
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-13362
#%!d(float64=121)
vendor/freemius/wordpress-sdk/templates/contact.php
AI: 1 vulnerabilities
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-13362
#%!d(float64=124)
vendor/freemius/wordpress-sdk/templates/powered-by.php
AI: 1 vulnerabilities
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-13362
#%!d(float64=134)
vendor/freemius/wordpress-sdk/templates/pricing.php
AI: 1 vulnerabilities
CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2024-13362
#%!d(float64=135)
Select a file from the list to inspect its diff and AI analysis.
↑ ↓ to navigate