Security Vulnerabilities
- CVEs Published In August 2019
The wp-rollback plugin before 1.2.3 for WordPress has XSS.
The wp-rollback plugin before 1.2.3 for WordPress has CSRF.
The link-log plugin before 2.1 for WordPress has SQL injection.
The link-log plugin before 2.0 for WordPress has HTTP Response Splitting.
The cp-polls plugin before 1.0.5 for WordPress has XSS.
The wp-plotly plugin before 1.0.3 for WordPress has XSS by authors.
The ckeditor-for-wordpress plugin before 4.5.3.1 for WordPress has reflected XSS in the "built-in (old)" file browser.
The check-email plugin before 0.5.2 for WordPress has XSS.
The woocommerce-exporter plugin before 1.8.4 for WordPress has privilege escalation.
The timesheet plugin before 0.1.5 for WordPress has multiple XSS issues.