Vulnerabilities (CVE)

Filtered by vendor Xylusthemes Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-40209 1 Xylusthemes 1 Wp Smart Import 2024-02-28 N/A 6.1 MEDIUM
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Xylus Themes WP Smart Import plugin <= 1.0.2 on WordPress.
CVE-2020-24147 1 Xylusthemes 1 Wp Smart Import 2024-02-28 6.4 MEDIUM 9.1 CRITICAL
Server-side request forgery (SSR) vulnerability in the WP Smart Import (wp-smart-import) plugin 1.0.0 for WordPress via the file field.