Vulnerabilities (CVE)

Filtered by vendor Connekthq Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-27451 1 Connekthq 1 Instant Images 2023-11-27 N/A 8.8 HIGH
Server-Side Request Forgery (SSRF) vulnerability in Darren Cooney Instant Images plugin <= 5.1.0.2 versions.
CVE-2021-24140 1 Connekthq 1 Ajax Load More 2021-03-22 6.5 MEDIUM 7.2 HIGH
Unvalidated input in the Ajax Load More WordPress plugin, versions before 5.3.2, lead to SQL Injection in POST /wp-admin/admin-ajax.php with param repeater=' or sleep(5)#&type=test.