wp_user_merger_project CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

wp_user_merger_project vulnerability overview

Aggregates CVE and security vulnerability intelligence across all wp_user_merger_project-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk sql injection; exposure may include vendor impact data exposure in vendor surface production workloads and vendor surface software deployment contexts.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2022-3865 The WP User Merger WordPress plugin before 1.5.3 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as admin [email protected] 8.8 1.00% 2022-11-28 2025-04-25
CVE-2022-3849 The WP User Merger WordPress plugin before 1.5.3 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as admin [email protected] 8.8 0.50% 2022-11-28 2025-04-28
CVE-2022-3848 The WP User Merger WordPress plugin before 1.5.3 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as admin [email protected] 8.8 0.50% 2022-11-28 2025-04-25
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence