Known vulnerabilities in Import any XML or CSV File to WordPress
Vendor:
Soflyy
Software:
Import any XML or CSV File to WordPress
Software CPE:
cpe:2.3:a:soflyy:wp-all-import:*:*:*:*:*:wordpress:*:*
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
5.3
Breakdown by Severity Chart
4.0.0
3.9.6
3.9.5
3.9.4
3.9.3
3.9.2
3.9.1
3.9.0
3.8.0
3.7.9
3.7.8
3.7.7
3.7.6
3.7.5
3.7.4-beta-1.0
3.7.3-beta-1.0
3.7.2
3.7.1
3.7.0
3.6.9
3.6.8
3.6.7
3.6.6
3.6.5
3.6.4
3.6.3
3.6.2
3.6.1
3.6.0
3.5.9
3.5.8
3.5.7
3.5.6
3.5.5
3.5.4
3.5.3
3.5.2
3.5.1
3.5.0
3.4.9
3.4.8
3.4.7
3.4.6
3.4.5
3.4.4
3.4.3
3.4.2
3.4.1
3.4.0
3.3.9
3.3.8
3.3.7
3.3.6
3.3.5
3.3.4
3.3.3
3.3.2
3.3.1
3.3.0
3.2.9
3.2.8
3.2.7
3.2.6
3.2.5
3.2.4
3.2.3
3.2.2
3.2.1
3.2.0
3.1.5
3.1.4
3.1.3
3.1.2
3.1.1
3.1.0
3.0.4
3.0.3
3.0.2
3.0.1
3.0
2.14
2.13
2.12
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU20598 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
CWE-79 | Low | 3.4.6 | 02.09.2019 |
SB2017100805 |
||
| #VU19667 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2018-0546 |
CWE-79 | Low | 3.4.6 | 02.08.2019 |
SB2018030813 |
||
| #VU19666 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2018-0547 |
CWE-79 | Low | 3.4.7 | 02.08.2019 |
SB2018030812 |
||
| #VU18262 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2018-16259 |
CWE-79 | Medium | - | 15.04.2019 |
SB2019041503 |
||
| #VU18261 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2018-16258 |
CWE-79 | Medium | - | 15.04.2019 |
SB2019041503 |