Vulnerability index

Browse CVEs

10 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

School Management HIGH 7.2
CVE-2024-33911

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Weblizar School Management Pro.This issue affec…

Fix: after 10.3.4
Fix from $1,950 2024-05-02
School Management CRITICAL 9.8
CVE-2022-1609EPSS 64%

The School Management WordPress plugin before 9.9.7 contains an obfuscated backdoor injected in it's license checking code that registers a REST API …

Fix: 9.9.7+
Fix from $2,300 2024-01-16
Responsive Coming Soon \& Maintenance Mode CRITICAL 9.8
CVE-2022-46849

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Weblizar Coming Soon Page – Responsive Coming S…

Fix: after 1.6.0
Fix from $2,300 2023-11-06
School Management Education \& Learning Management CRITICAL 9.8
CVE-2022-47430

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Weblizar The School Management – Education & Le…

Fix: 4.2+
Fix from $2,300 2023-11-06
Admin Custom Login HIGH 8.8
CVE-2021-34628

The Admin Custom Login WordPress plugin is vulnerable to Cross-Site Request Forgery due to the loginbgSave action found in the ~/includes/Login-form-…

Fix: after 3.2.7
Fix from $1,950 2021-08-02
Social Likebox \& Feed HIGH 8.8
CVE-2019-15781

The facebook-by-weblizar plugin before 2.8.5 for WordPress has CSRF.

Fix: 2.8.5+
Fix from $1,950 2019-08-29
Pinterest Feeds HIGH 8.8
CVE-2018-5656

An issue was discovered in the weblizar-pinterest-feeds plugin 1.1.1 for WordPress. CSRF exists via wp-admin/admin-ajax.php.

No fix yet
Fix from $1,950 2018-01-13
Pinterest Feeds MEDIUM 6.1
CVE-2018-5653

An issue was discovered in the weblizar-pinterest-feeds plugin 1.1.1 for WordPress. XSS exists via the wp-admin/admin-ajax.php weblizar_pffree_settin…

No fix yet
Fix from $1,600 2018-01-13
Pinterest Feeds MEDIUM 6.1
CVE-2018-5654

An issue was discovered in the weblizar-pinterest-feeds plugin 1.1.1 for WordPress. XSS exists via the wp-admin/admin-ajax.php PFFREE_Access_Token pa…

No fix yet
Fix from $1,600 2018-01-13
Pinterest Feeds MEDIUM 6.1
CVE-2018-5655

An issue was discovered in the weblizar-pinterest-feeds plugin 1.1.1 for WordPress. XSS exists via the wp-admin/admin-ajax.php security parameter.

No fix yet
Fix from $1,600 2018-01-13