Security
Headlines
HeadlinesLatestCVEs

Tag

#wordpress

CVE-2015-9298: Events Manager

The events-manager plugin before 5.6 for WordPress has code injection.

CVE
#sql#xss#csrf#vulnerability#web#ios#windows#apple#google#js#git#java#wordpress#php#perl#pdf#oauth#auth#firefox#sap#ssl
CVE-2015-9302: Simple Fields

The simple-fields plugin before 1.4.11 for WordPress has XSS.

CVE-2019-14948

The woocommerce-product-addon plugin before 18.4 for WordPress has XSS via an import of a new meta data structure.

CVE-2019-14792

The WP Google Maps plugin before 7.11.35 for WordPress allows XSS via the wp-admin/ rectangle_name or rectangle_opacity parameter.