datainterlock note_press CVE Vulnerabilities (4)

CVEs: 4 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting datainterlock note_press (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 14 of 4 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2022-1690 The Note Press WordPress plugin through 0.1.10 does not sanitise and escape the ids from the bulk actions before using them in a SQL statement in an admin page, leading to an SQL injection [email protected] 2.7 0.75% 2022-06-08 2024-11-21
CVE-2022-1689 The Note Press WordPress plugin through 0.1.10 does not sanitise and escape the Update parameter before using it in a SQL statement when updating a note via the admin dashboard, leading to an SQL injection [email protected] 2.7 0.75% 2022-06-08 2024-11-21
CVE-2022-1688 The Note Press WordPress plugin through 0.1.10 does not sanitise and escape the id parameter before using it in various SQL statement via the admin dashboard, leading to SQL Injections [email protected] 2.7 0.75% 2022-06-08 2024-11-21
CVE-2017-18548 The note-press plugin before 0.1.2 for WordPress has SQL injection. [email protected] 9.8 1.81% 2019-08-16 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence