{"error":0,"message":null,"data":{"name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense","plugin":"advanced-ads","link":"https:\/\/wordpress.org\/plugins\/advanced-ads\/","latest":"1785772080","closed":0,"closed_reason":null,"closed_date":null,"vulnerability":[{"uuid":"7751cc3333e6640a72ffd14d98a79b0b971b7957fd47c6c4d49c4d0d878df2a3","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 1.17.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.17.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"7f7383fa1342eeb58c7d7371701dd92ec8bebac3","name":"WordPress Advanced Ads \u2013 Ad Manager & AdSense plugin <= 1.17.3 - Authenticated Reflected Cross-Site Scripting (XSS) vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/advanced-ads\/vulnerability\/wordpress-advanced-ads-ad-manager-adsense-plugin-1-17-3-authenticated-reflected-cross-site-scripting-xss-vulnerability","description":"Authenticated Reflected Cross-Site Scripting (XSS) vulnerability discovered by Sucuri in WordPress Advanced Ads \u2013 Ad Manager & AdSense plugin (versions <= 1.17.3).","date":"2020-03-17"}],"impact":[]},{"uuid":"3a1714be2a2a4bbb07779f750f25e568e873743b2f0e40e33228d5ae2a3e9202","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 1.32.0","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.32.0","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2022-32776","name":"CVE-2022-32776","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2022-32776","description":"[en] Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Advanced Ads GmbH Advanced Ads \u2013 Ad Manager & AdSense plugin <= 1.31.1 on WordPress.","date":"2022-11-08"},{"id":"e07c8bdce58270d1e021bc1ea23cf2b48d1bc838","name":"WordPress Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin <= 1.31.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/advanced-ads\/vulnerability\/wordpress-advanced-ads-ad-manager-adsense-plugin-1-31-1-authenticated-stored-cross-site-scripting-xss-vulnerability","description":"Authenticated Stored Cross-Site Scripting (XSS) vulnerability discovered by Muhammad Daffa (Patchstack Alliance) in WordPress Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin (versions <= 1.31.1).\nUpdate the WordPress Advanced Ads \u2013 Ad Manager & AdSense plugin to the latest available version (at least 1.32.0).","date":"2022-09-28"},{"id":"0c3761556f0b40640bb6abd6e7472c7b7d38e3ae","name":"Advanced Ads \u2013 Ad Manager & AdSense <= 1.31.1 - Authenticated (Administrator+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/advanced-ads\/advanced-ads-ad-manager-adsense-1311-authenticated-administrator-stored-cross-site-scripting","description":"The Advanced Ads plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the title parameter in versions up to, and including, 1.31.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level permissions and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2022-09-28"},{"id":"2808d166-b9eb-419d-9a1e-a87786a4bdd3","name":"Advanced Ads &lt; 1.32.0 - Admin+ Stored XSS","link":"https:\/\/wpscan.com\/vulnerability\/2808d166-b9eb-419d-9a1e-a87786a4bdd3","description":"The plugin does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)","date":null}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:R\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"h","ui":"r","s":"c","c":"l","i":"l","a":"n","score":"4.8","severity":"m","exploitable":"1.7","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:R\/S:C\/C:L\/I:L\/A:N","score":"4.8","severity":"medium","av":"network","ac":"low","pr":"high","ui":"required","s":"changed","c":"low","i":"low","a":"none","exploitable":"1.7","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}]}},{"uuid":"afad04169c90c4608eaa9556c41ea59fa9e4af4c0f081cba5531d82ba2588a2e","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 1.17.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.17.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"8553236e-003a-4f7e-96d2-14cf52ad1b99","name":"Advanced Ads &lt; 1.17.4 - Reflected XSS via Admin Dashboard","link":"https:\/\/wpscan.com\/vulnerability\/8553236e-003a-4f7e-96d2-14cf52ad1b99","description":"The plugin does not sanitise and escape the advads-last-edited-group before outputting it back in an attribute in n admin page, leading to a Reflected Cross-Site Scripting","date":null}],"impact":[]},{"uuid":"58f827d008407427378e5748260c3b78f8ea70c78c1731090131d1415569f091","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 1.17.4","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.17.4","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"e83c33af3964f299b7ca2b4f32c9ddbf9551b285","name":"Advanced Ads <= 1.17.3 - Reflected Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/advanced-ads\/advanced-ads-1173-reflected-cross-site-scripting","description":"The Advanced Ads plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the \u2018advads-last-edited-group\u2019 parameter in versions up to, and including, 1.17.3 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.","date":"2020-03-18"}],"impact":[]},{"uuid":"5d6fb5d821a0028ef02ac787ffb81cd72f9c5df6a337645dea52502a015ab697","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 1.52.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.52.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-2290","name":"CVE-2024-2290","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-2290","description":"[en] The Advanced Ads plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.52.1 via deserialization of untrusted input in the 'placement_slug' parameter. This makes it possible for authenticated attackers to inject a PHP Object. No POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.","date":"2024-05-09"},{"id":"cc77cd81b666402f56bb1cd3295a0e91956d0b87","name":"Advanced Ads \u2013 Ad Manager & AdSense <= 1.52.1 - Authenticated (Admin+) PHP Object Injection","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/advanced-ads\/advanced-ads-ad-manager-adsense-1521-authenticated-admin-php-object-injection","description":"The Advanced Ads plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.52.1 via deserialization of untrusted input in the 'placement_slug' parameter. This makes it possible for authenticated attackers to inject a PHP Object. No POP chain is present in the vulnerable plugin. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.","date":"2024-05-07"},{"id":"80d84230783fba31907e50b9d7733f42c0f2039b","name":"WordPress Advanced Ads \u2013 Ad Manager & AdSense Plugin <= 1.52.1 is vulnerable to PHP Object Injection","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/advanced-ads\/vulnerability\/wordpress-advanced-ads-plugin-1-52-1-authenticated-admin-php-object-injection-vulnerability","description":"<p>WordPress Advanced Ads \u2013 Ad Manager & AdSense Plugin <= 1.52.1 is vulnerable to PHP Object Injection<\/p><p>Software: Advanced Ads \u2013 Ad Manager & AdSense<\/p><p>Link: https:\/\/wordpress.org\/plugins\/advanced-ads\/#developers<\/p><p>Affected Version <= 1.52.1<\/p><p>Fixed in version 1.52.2 <\/p>","date":"2024-05-08"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"7.2","severity":"h","exploitable":"1.2","impact":"5.9"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","score":"7.2","severity":"high","av":"network","ac":"low","pr":"high","ui":"none","s":"unchanged","c":"high","i":"high","a":"high","exploitable":"1.2","impact":"5.9"},"cwe":[{"cwe":"CWE-502","name":"Deserialization of Untrusted Data","description":"The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"total","kev":false,"kev_date":null}}},{"uuid":"99ba0f0bb12103a81cf07349efc06a14901a9b2732099c15a05832c27b1d8581","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 1.52.2","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"1.52.2","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2024-3952","name":"CVE-2024-3952","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2024-3952","description":"[en] The Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Advanced Ad widget in all versions up to, and including, 1.52.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-05-09"},{"id":"dc1a61b841dc77ea8c422ff30f42415abde4a2d7","name":"Advanced Ads \u2013 Ad Manager & AdSense <= 1.52.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Ad Widget","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/advanced-ads\/advanced-ads-ad-manager-adsense-1521-authenticated-contributor-stored-cross-site-scripting-via-ad-widget","description":"The Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Advanced Ad widget in all versions up to, and including, 1.52.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2024-05-07"},{"id":"2c0f8790a094bf834153b2f90424a870c9ddcec8","name":"WordPress Advanced Ads \u2013 Ad Manager & AdSense Plugin <= 1.52.1 is vulnerable to Cross Site Scripting (XSS)","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/advanced-ads\/vulnerability\/wordpress-advanced-ads-plugin-1-52-1-authenticated-contributor-stored-cross-site-scripting-via-ad-widget-vulnerability","description":"<p>WordPress Advanced Ads \u2013 Ad Manager & AdSense Plugin <= 1.52.1 is vulnerable to Cross Site Scripting (XSS)<\/p><p>Software: Advanced Ads \u2013 Ad Manager & AdSense<\/p><p>Link: https:\/\/wordpress.org\/plugins\/advanced-ads\/#developers<\/p><p>Affected Version <= 1.52.1<\/p><p>Fixed in version 1.52.2 <\/p>","date":"2024-05-08"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:L\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"c","c":"l","i":"l","a":"n","score":"6.4","severity":"m","exploitable":"3.1","impact":"2.7"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:C\/C:L\/I:L\/A:N","score":"6.4","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"changed","c":"low","i":"low","a":"none","exploitable":"3.1","impact":"2.7"},"cwe":[{"cwe":"CWE-79","name":"Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')","description":"The product does not neutralize or incorrectly neutralizes user-controllable input before it is placed in output that is used as a web page that is served to other users."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"04c8c24cbe6814f9885ee5f5b430ac8225749824e9512a048c68803022ed7bbe","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 2.0.13","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.0.13","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-10487","name":"CVE-2025-10487","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-10487","description":"[en] The Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.0.12 via the select_one() function. This is due to the endpoint not properly restricting access to the AJAX endpoint or limiting the functions that can be called to safe functions. This makes it possible for unauthenticated attackers to call arbitrary functions beginning with get_the_ like get_the_excerpt which can make information exposure possible.","date":"2025-11-01"},{"id":"cb5fc9966442b3c1880551a1de422a22c8c4a7e5","name":"WordPress Advanced Ads Plugin <= 2.0.12 is vulnerable to Arbitrary Code Execution","link":"https:\/\/patchstack.com\/database\/wordpress\/plugin\/advanced-ads\/vulnerability\/wordpress-advanced-ads-plugin-2-0-12-unauthenticated-limited-code-execution-vulnerability","description":"<p>WordPress Advanced Ads Plugin <= 2.0.12 is vulnerable to Arbitrary Code Execution<\/p><p>Software: Advanced Ads<\/p><p>Fixed in version 2.0.13 <\/p><p>Affected Version <= 2.0.12<\/p><p>CVE: CVE-2025-10487<\/p>","date":"2025-11-03"},{"id":"4c746e5a66cb91548c566ec58504755db7cb2e61","name":"Advanced Ads <= 2.0.12 - Unauthenticated Limited Code Execution","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/advanced-ads\/advanced-ads-2012-unauthenticated-limited-code-execution","description":"The Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.0.12 via the select_one() function. This is due to the endpoint not properly restricting access to the AJAX endpoint or limiting the functions that can be called to safe functions. This makes it possible for unauthenticated attackers to call arbitrary functions beginning with get_the_ like get_the_excerpt which can make information exposure possible.","date":"2025-10-31"},{"id":"EUVD-2025-37428","name":"EUVD-2025-37428","link":"https:\/\/euvd.enisa.europa.eu\/enisa\/EUVD-2025-37428","description":"The Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.0.12 via the select_one() function. This is due to the endpoint not properly restricting access to the AJAX endpoint or limiting the functions that can be called to safe functions. This makes it possible for unauthenticated attackers to call arbitrary functions beginning with get_the_ like get_the_excerpt which can make information exposure possible.","date":"2025-11-01"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:L\/I:L\/A:L","av":"n","ac":"l","pr":"n","ui":"n","s":"u","c":"l","i":"l","a":"l","score":"7.3","severity":"h","exploitable":"3.9","impact":"3.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:L\/I:L\/A:L","score":"7.3","severity":"high","av":"network","ac":"low","pr":"none","ui":"none","s":"unchanged","c":"low","i":"low","a":"low","exploitable":"3.9","impact":"3.4"},"cwe":[{"cwe":"CWE-94","name":"Improper Control of Generation of Code ('Code Injection')","description":"The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment."}],"ssvc":{"exploitation":"none","automatable":"yes","technical_impact":"partial","kev":false,"kev_date":null},"epss":"0.002"}},{"uuid":"711da44830954edb2ace049c5275138722a38dfee02f4816b7bee6cabff98ec7","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 2.0.15","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.0.15","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-13592","name":"CVE-2025-13592","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-13592","description":"[en] The Advanced Ads plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 2.0.14 via the 'change-ad__content' shortcode parameter. This allows authenticated attackers with editor-level permissions or above, to execute code on the server.","date":"2025-12-29"},{"id":"31380824ea8882fd74ee10cd2a5f1ad7be4b40b5","name":"Advanced Ads <= 2.0.14 - Authenticated (Editor+) Remote Code Execution via Shortcode","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/advanced-ads\/advanced-ads-2014-authenticated-editor-remote-code-execution-via-shortcode","description":"The Advanced Ads plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 2.0.14 via the 'change-ad__content' shortcode parameter. This allows authenticated attackers with editor-level permissions or above, to execute code on the server.","date":"2025-12-29"},{"id":"EUVD-2025-205633","name":"EUVD-2025-205633","link":"https:\/\/euvd.enisa.europa.eu\/enisa\/EUVD-2025-205633","description":"The Advanced Ads plugin for WordPress is vulnerable to Remote Code Execution in versions up to, and including, 2.0.14 via the 'change-ad__content' shortcode parameter. This allows authenticated attackers with editor-level permissions or above, to execute code on the server.","date":"2025-12-29"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"7.2","severity":"h","exploitable":"1.2","impact":"5.9"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:H\/A:H","score":"7.2","severity":"high","av":"network","ac":"low","pr":"high","ui":"none","s":"unchanged","c":"high","i":"high","a":"high","exploitable":"1.2","impact":"5.9"},"cwe":[{"cwe":"CWE-94","name":"Improper Control of Generation of Code ('Code Injection')","description":"The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"total","kev":false,"kev_date":null},"epss":"0.002"}},{"uuid":"9bd6636eb542d6979f0023c5b962863bacccd1e1f3cbc0644b34b0582d0e76d2","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 2.0.16","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.0.16","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-12984","name":"CVE-2025-12984","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-12984","description":"[en] The Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter in all versions up to, and including, 2.0.15 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.  This makes it possible for authenticated attackers, with Administrator-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.","date":"2026-01-17"},{"id":"c9d4f45a17c5d30a3766a3bf8b85c5b6829fc8d0","name":"Advanced Ads \u2013 Ad Manager & AdSense <= 2.0.15 - Authenticated (Admin+) SQL Injection","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/advanced-ads\/advanced-ads-ad-manager-adsense-2015-authenticated-admin-sql-injection","description":"The Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter in all versions up to, and including, 2.0.15 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.  This makes it possible for authenticated attackers, with Administrator-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.","date":"2026-01-16"},{"id":"EUVD-2026-3145","name":"EUVD-2026-3145","link":"https:\/\/euvd.enisa.europa.eu\/enisa\/EUVD-2026-3145","description":"The Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter in all versions up to, and including, 2.0.15 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.  This makes it possible for authenticated attackers, with Administrator-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.","date":"2026-01-17"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:N\/A:N","av":"n","ac":"l","pr":"h","ui":"n","s":"u","c":"h","i":"n","a":"n","score":"4.9","severity":"m","exploitable":"1.2","impact":"3.6"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:H\/UI:N\/S:U\/C:H\/I:N\/A:N","score":"4.9","severity":"medium","av":"network","ac":"low","pr":"high","ui":"none","s":"unchanged","c":"high","i":"none","a":"none","exploitable":"1.2","impact":"3.6"},"cwe":[{"cwe":"CWE-89","name":"Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')","description":"The product constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component. Without sufficient removal or quoting of SQL syntax in user-controllable inputs, the generated SQL query can cause those inputs to be interpreted as SQL instead of ordinary user data."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"6f4545104256f953dc99ecac44369a150417ac8a47dae11bcf75ec246257ee5d","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 2.0.15","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.0.15","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2025-12884","name":"CVE-2025-12884","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2025-12884","description":"[en] The Advanced Ads \u2013 Ad Manager & AdSense plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 2.0.14. This is due to the plugin not properly verifying that a user is authorized to perform an action in the `placement_update_item()` function. This makes it possible for authenticated attackers, with subscriber-level access and above, to update ad placements, allowing them to change which ad or ad group a placement serves.","date":"2026-02-19"},{"id":"41eb5a156d1147e10906737b41ccdba4b445e41d","name":"Advanced Ads \u2013 Ad Manager & AdSense <= 2.0.14 - Missing Authorization to Authenticated (Subscriber+) Ad Placements Update","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/advanced-ads\/advanced-ads-ad-manager-adsense-2014-missing-authorization-to-authenticated-subscriber-ad-placements-update","description":"The Advanced Ads \u2013 Ad Manager & AdSense plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 2.0.14. This is due to the plugin not properly verifying that a user is authorized to perform an action in the `placement_update_item()` function. This makes it possible for authenticated attackers, with subscriber-level access and above, to update ad placements, allowing them to change which ad or ad group a placement serves.","date":"2026-02-18"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:L\/A:N","av":"n","ac":"l","pr":"l","ui":"n","s":"u","c":"n","i":"l","a":"n","score":"4.3","severity":"m","exploitable":"2.8","impact":"1.4"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:L\/PR:L\/UI:N\/S:U\/C:N\/I:L\/A:N","score":"4.3","severity":"medium","av":"network","ac":"low","pr":"low","ui":"none","s":"unchanged","c":"none","i":"low","a":"none","exploitable":"2.8","impact":"1.4"},"cwe":[{"cwe":"CWE-284","name":"Improper Access Control","description":"The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}},{"uuid":"935444336915aca6860982c168e66e51c9d506b22ac029c84e3dd96fe377c717","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 2.0.22","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.0.22","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-54816","name":"CVE-2026-54816","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-54816","description":"[en] Improper Control of Generation of Code ('Code Injection') vulnerability in Monetizemore Advanced Ads allows Remote Code Inclusion.\n\nThis issue affects Advanced Ads: from n\/a through 2.0.21.","date":"2026-06-17"},{"id":"d4f27dd80426331466c18bdcaec54198d64c9a15","name":"Advanced Ads \u2013\u00a0Ad Manager & AdSense <= 2.0.21 - Authenticated (Contributor+) Remote Code Execution","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/advanced-ads\/advanced-ads-ad-manager-adsense-2021-authenticated-contributor-remote-code-execution","description":"The Advanced Ads \u2013\u00a0Ad Manager & AdSense plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 2.0.21. This makes it possible for authenticated attackers, with Contributor-level access and above, to execute code on the server.","date":"2026-06-17"}],"impact":{"cvss":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:H\/PR:L\/UI:N\/S:U\/C:H\/I:H\/A:H","av":"n","ac":"h","pr":"l","ui":"n","s":"u","c":"h","i":"h","a":"h","score":"7.5","severity":"h","exploitable":"0.0","impact":"0.0"},"cvss3":{"version":"3.1","vector":"CVSS:3.1\/AV:N\/AC:H\/PR:L\/UI:N\/S:U\/C:H\/I:H\/A:H","score":"7.5","severity":"high","av":"network","ac":"high","pr":"low","ui":"none","s":"unchanged","c":"high","i":"high","a":"high","exploitable":"0.0","impact":"0.0"},"cwe":[{"cwe":"CWE-94","name":"Improper Control of Generation of Code ('Code Injection')","description":"The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment."}],"ssvc":{"exploitation":"none","automatable":"no","technical_impact":"total","kev":false,"kev_date":null}}},{"uuid":"3d7ef5a23b9da511b815e5c50175ca00e5885193697c5f52fe5a4e4e22be050d","name":"Advanced Ads \u2013\u00a0Ad Manager &amp; AdSense [advanced-ads] < 2.0.23","description":null,"operator":{"min_version":null,"min_operator":null,"max_version":"2.0.23","max_operator":"lt","unfixed":"0","closed":"0"},"source":[{"id":"CVE-2026-10082","name":"Advanced Ads \u2013 Ad Manager & AdSense < 2.0.23 - Contributor+ Stored XSS via the_ad Shortcode 'ad_args' Parameter","link":"https:\/\/www.cve.org\/CVERecord?id=CVE-2026-10082","description":"The Advanced Ads  WordPress plugin before 2.0.23 does not sanitize and escape a shortcode parameter before outputting it in the page, allowing users with the Contributor role and above to inject arbitrary web scripts that execute when the affected content is viewed, including by higher-privileged users.","date":"0000-00-00"},{"id":"941e7a5c73fc8882dbc6c360ec4258ed132b0bd1","name":"Advanced Ads \u2013 Ad Manager & AdSense <= 2.0.22 - Authenticated (Contributor+) Stored Cross-Site Scripting","link":"https:\/\/www.wordfence.com\/threat-intel\/vulnerabilities\/wordpress-plugins\/advanced-ads\/advanced-ads-ad-manager-adsense-2022-authenticated-contributor-stored-cross-site-scripting","description":"The Advanced Ads \u2013 Ad Manager & AdSense plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.0.22 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.","date":"2026-07-06"}],"impact":{"ssvc":{"exploitation":"poc","automatable":"no","technical_impact":"partial","kev":false,"kev_date":null}}}]},"updated":"1785389908"}