Vulnerabilities (CVE)

Filtered by vendor Wpchill Subscribe
Filtered by product Check \& Log Email
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-1547 1 Wpchill 1 Check \& Log Email 2022-05-30 4.3 MEDIUM 6.1 MEDIUM
The Check & Log Email WordPress plugin before 1.0.6 does not sanitise and escape a parameter before outputting it back in an attribute in an admin page, leading to a Reflected Cross-Site Scripting
CVE-2021-24908 1 Wpchill 1 Check \& Log Email 2021-11-29 2.6 LOW 6.1 MEDIUM
The Check & Log Email WordPress plugin before 1.0.4 does not escape the d parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting