CVE-2015-9440: Monetize Project Monetize
Medium severity, CVSS 6.5. EPSS: 0.8% chance of exploitation in the next 30 days.
The monetize plugin through 1.03 for WordPress has CSRF with resultant XSS via wp-admin/admin.php?page=monetize-zones-new.
Affected products
- Monetize Project Monetize: up to and including 1.03
Published 2019-09-26. Last modified 2026-06-17.