Vulnerabilities (CVE)

Filtered by vendor Soflyy Subscribe
Total 25 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-18567 1 Soflyy 1 Wp All Import 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
The wp-all-import plugin before 3.4.6 for WordPress has XSS.
CVE-2015-9329 1 Soflyy 1 Wp All Import 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
The wp-all-import plugin before 3.2.5 for WordPress has reflected XSS.
CVE-2015-9331 1 Soflyy 1 Wp All Import 2024-02-04 5.0 MEDIUM 7.5 HIGH
The wp-all-import plugin before 3.2.4 for WordPress has no prevention of unauthenticated requests to adminInit.
CVE-2018-0546 1 Soflyy 1 Wp All Import 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting vulnerability in WP All Import plugin prior to version 3.4.6 for WordPress allows an attacker to inject arbitrary web script or HTML via unspecified vectors.
CVE-2018-0547 1 Soflyy 1 Wp All Import 2024-02-04 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting vulnerability in WP All Import plugin prior to version 3.4.7 for WordPress allows an attacker to inject arbitrary web script or HTML via unspecified vectors.