Codection / Import Users From Csv With Meta
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2019-15326 | The import-users-from-csv-with-meta plugin before 1.14.2.1 for WordPress has directory traversal. | HIGH | 7.5 | Aug 22, 2019 |
| CVE-2019-15327 | The import-users-from-csv-with-meta plugin before 1.14.1.3 for WordPress has XSS via imported data. | MEDIUM | 6.1 | Aug 22, 2019 |
| CVE-2019-15328 | The import-users-from-csv-with-meta plugin before 1.14.0.3 for WordPress has XSS. | MEDIUM | 6.1 | Aug 22, 2019 |
| CVE-2019-15329 | The import-users-from-csv-with-meta plugin before 1.14.0.3 for WordPress has CSRF. | HIGH | 8.8 | Aug 22, 2019 |
| CVE-2019-14683 | The codection "Import users from CSV with meta" plugin before 1.14.2.2 for WordPress allows wp-admin/admin-ajax.php?action=acui_delete_attachment CSRF. | MEDIUM | 5.7 | Aug 8, 2019 |
| CVE-2018-20101 | The codection "Import users from CSV with meta" plugin before 1.12.1 for WordPress allows XSS via the value of a cell. | MEDIUM | 6.1 | Dec 12, 2018 |
Showing 1 to 6 of 6 CVEs