Skip to main content

Vendor/product archive

sedlex / simple_quotation CVEs

Beta · best-effort

2 CVEs tagged to sedlex / simple_quotation0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2022-22735

Published Mar 14, 2022

The Simple Quotation WordPress plugin through 1.3.2 does not have authorisation (and CSRF) checks in various of its AJAX actions and is lacking escaping of user data when using it…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2022-22734

Published Mar 14, 2022

The Simple Quotation WordPress plugin through 1.3.2 does not have CSRF check when creating or editing a quote and does not sanitise and escape Quotes. As a result, attacker could…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1