Security Vulnerabilities
- CVEs Published In August 2019
The liveforms plugin before 3.4.0 for WordPress has XSS.
The simple-job-board plugin before 2.4.4 for WordPress has reflected XSS via keyword search.
The wp-live-chat-support plugin before 7.1.05 for WordPress has XSS.
The contact-form-to-email plugin before 1.2.66 for WordPress has XSS.
The contact-form-to-email plugin before 1.2.66 for WordPress has CSRF.
The events-manager plugin before 5.5.7.1 for WordPress has DOM XSS.
The events-manager plugin before 5.5.7 for WordPress has multiple XSS issues.
The liveforms plugin before 3.2.0 for WordPress has SQL injection.
The simple-fields plugin before 1.4.11 for WordPress has XSS.
The all-in-one-wp-security-and-firewall plugin before 4.0.5 for WordPress has XSS in the blacklist, file system, and file change detection settings pages.