Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2024-8252 The Clean Login plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.14.5 via the 'template' attribute … Clean Login 1.14.6+ Fix from $1,9502024-08-30 MEDIUM 5.3 CVE-2024-22151 Missing Authorization vulnerability in Codection Import and export users and customers.This issue affects Import and export users and customers: from… Import And Export Users And Customers 1.24.7+ Fix from $1,6002024-06-08 MEDIUM 5.4 CVE-2023-6624 The Import and export users and customers plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all vers… Import And Export Users And Customers after 1.24.3 Fix from $1,6002024-01-11 HIGH 7.2 CVE-2023-6583 The Import and export users and customers plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.24.2 via … Import And Export Users And Customers after 1.24.2 Fix from $1,9502024-01-11 MEDIUM 5.4 CVE-2022-4838 The Clean Login WordPress plugin before 1.13.7 does not validate and escape some of its shortcode attributes before outputting them back in the page,… Clean Login 1.13.7+ Fix from $1,6002023-02-06 HIGH 8.0 CVE-2022-3558 The Import and export users and customers WordPress plugin before 1.20.5 does not properly escape data when exporting it via CSV files. Import And Export Users And Customers 1.20.5+ Fix from $1,9502022-11-07 HIGH 8.0 CVE-2020-22277 Import and export users and customers WordPress Plugin through 1.15.5.11 allows CSV injection via a customer's profile. Import And Export Users And Customers after 1.15.5.11 Fix from $1,9502020-11-04 HIGH 8.8 CVE-2019-15329 The import-users-from-csv-with-meta plugin before 1.14.0.3 for WordPress has CSRF. Import Users From Csv With Meta 1.14.0.3+ Fix from $1,9502019-08-22 HIGH 7.5 CVE-2019-15326 The import-users-from-csv-with-meta plugin before 1.14.2.1 for WordPress has directory traversal. Import Users From Csv With Meta 1.14.2.1+ Fix from $1,9502019-08-22 MEDIUM 6.1 CVE-2019-15327 The import-users-from-csv-with-meta plugin before 1.14.1.3 for WordPress has XSS via imported data. Import Users From Csv With Meta 1.14.1.3+ Fix from $1,6002019-08-22 MEDIUM 6.1 CVE-2019-15328 The import-users-from-csv-with-meta plugin before 1.14.0.3 for WordPress has XSS. Import Users From Csv With Meta 1.14.0.3+ Fix from $1,6002019-08-22 MEDIUM 6.1 CVE-2015-9336 The clean-login plugin before 1.5.1 for WordPress has reflected XSS. Clean Login 1.5.1+ Fix from $1,6002019-08-22 MEDIUM 5.7 CVE-2019-14683 The codection "Import users from CSV with meta" plugin before 1.14.2.2 for WordPress allows wp-admin/admin-ajax.php?action=acui_delete_attachment CSR… Import Users From Csv With Meta 1.14.2.2+ Fix from $1,6002019-08-08 MEDIUM 6.1 CVE-2018-20101 The codection "Import users from CSV with meta" plugin before 1.12.1 for WordPress allows XSS via the value of a cell. Import Users From Csv With Meta Mitigation only Fix from $1,6002018-12-12 MEDIUM 6.5 CVE-2017-8875 CSRF in the Clean Login plugin before 1.8 for WordPress allows remote attackers to change the login redirect URL or logout redirect URL. Clean Login Patch available Fix from $1,6002017-05-10