Extension WordPress
Vulnérabilités Admin Columns Pro
Cette page rassemble les failles publiées pour Admin Columns Pro, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Admin Columns Pro
3 fiches
Admin Columns Free < 4.3.2 and Pro < 5.5.2 Authenticated Stored Cross-Site Scripting
The Admin Columns WordPress plugin Free before 4.3.2 and Pro before 5.5.2 allowed to configure individual columns for tables. Each column had a type. The type "Custom Field" allowed to choose an arbitrary database column to display in…
[*, 5.5.2)
5.5.2
21/06/2021
Admin Columns Free < 4.3 and Pro < 5.5.1 Stored Cross-Site Scripting
The Admin Columns Free WordPress plugin before 4.3 and Admin Columns Pro WordPress plugin before 5.5.1, rendered input on the posted pages with improper input validation on the value passed into the field 'Label' parameter, by taking this…
[*, 5.5.1)
5.5.1
31/05/2021
Admin Columns PRO <= 6.4.9 – Authenticated (Subscriber+) CSV Injection
The Admin Columns Pro plugin for WordPress is vulnerable to CSV Injection via the export functionality in all versions up to, and including 6.4.9. This makes it possible for authenticated attackers, with subscriber-level access and above, to embed…
*-6.4.9
6.4.10
29/10/2019
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.