Security Vulnerabilities
- CVEs Published In August 2019
An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the AP4_AvccAtom class at Core/Ap4AvccAtom.cpp.
The simple-fields plugin before 1.2 for WordPress has CSRF in the admin interface.
The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit location feature.
The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit map feature.
The wp-google-map-plugin plugin before 2.3.10 for WordPress has CSRF in the add/edit category feature.
The all-in-one-wp-security-and-firewall plugin before 3.9.1 for WordPress has multiple SQL injection issues.
The google-document-embedder plugin before 2.6.1 for WordPress has XSS.
The google-document-embedder plugin before 2.6.2 for WordPress has XSS.
The google-document-embedder plugin before 2.6.2 for WordPress has CSRF.
The simple-add-pages-or-posts plugin before 1.7 for WordPress has CSRF for deleting users.