Vulnerabilities (CVE)

Filtered by vendor Commoninja Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-28535 1 Commoninja 1 Paytm Payment Donation 2024-11-21 N/A 7.1 HIGH
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Paytm Paytm Payment Donation plugin <= 2.2.0 versions.
CVE-2022-1392 1 Commoninja 1 Videos Sync Pdf 2024-11-21 5.0 MEDIUM 7.5 HIGH
The Videos sync PDF WordPress plugin through 1.7.4 does not validate the p parameter before using it in an include statement, which could lead to Local File Inclusion issues