ZeroHour

Vulnerabilities

4 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2022-1690
+2 in the same advisory: …1689 …1688
The Note Press WordPress plugin through 0.1.10 does not sanitise and escape the ids from the bulk actions before using them in a SQL statement in an admin page,

The Note Press WordPress plugin through 0.1.10 does not sanitise and escape the ids from the bulk actions before using them in a SQL statement in an admin page, leading to an SQL injection

NVD description · AI analysis pending
2.7<1% PoC ×2
  • datainterlock note press
CVE-2017-18548
The note-press plugin before 0.1.2 for WordPress has SQL injection.

The note-press plugin before 0.1.2 for WordPress has SQL injection.

NVD description · AI analysis pending
9.82%
  • datainterlock note press