Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Secondlinethemes Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-1023 1 Secondlinethemes 1 Podcast Importer Secondline 2022-04-14 6.5 MEDIUM 7.2 HIGH
The Podcast Importer SecondLine WordPress plugin before 1.3.8 does not sanitise and properly escape some imported data, which could allow SQL injection attacks to be performed by imported a malicious podcast file
CVE-2021-24743 1 Secondlinethemes 1 Podcast Subscribe Buttons 2021-10-22 3.5 LOW 5.4 MEDIUM
The Podcast Subscribe Buttons WordPress plugin before 1.4.2 allows users with any role capable of editing or adding posts to perform stored XSS.