Lucene search

K

Cleverplugins Security Vulnerabilities

cve
cve

CVE-2021-24747

The SEO Booster WordPress plugin before 3.8 allows for authenticated SQL injection via the "fn_my_ajaxified_dataloader_ajax" AJAX request as the $_REQUEST['order'][0]['dir'] parameter is not properly escaped leading to blind and error-based SQL injections.

7.2CVSS

7.3AI Score

0.001EPSS

2021-12-13 11:15 AM
23
4
cve
cve

CVE-2023-47754

Missing Authorization vulnerability in Clever plugins Delete Duplicate Posts allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Delete Duplicate Posts: from n/a through 4.8.9.

9.8CVSS

9.4AI Score

0.001EPSS

2023-12-19 12:15 AM
38