Security Vulnerabilities
- CVEs Published In August 2019
The nelio-ab-testing plugin before 4.6.4 for WordPress has CSRF in experiment forms.
The church-admin plugin before 1.2550 for WordPress has CSRF affecting the upload of a bible reading plan.
The companion-auto-update plugin before 3.2.1 for WordPress has CSRF.
The companion-auto-update plugin before 3.2.1 for WordPress has local file inclusion.
The js-jobs plugin before 1.0.7 for WordPress has CSRF.
The i-recommend-this plugin before 3.7.3 for WordPress has SQL injection.
The erident-custom-login-and-dashboard plugin before 3.5 for WordPress has CSRF.
The 404-to-301 plugin before 2.0.3 for WordPress has SQL injection.
The easy-digital-downloads plugin before 2.3.3 for WordPress has SQL injection.
The xo-security plugin before 1.5.3 for WordPress has XSS.