Extension WordPress
Vulnérabilités Check & Log Email – Easy Email Testing & Mail logging
Cette page rassemble les failles publiées pour Check & Log Email – Easy Email Testing & Mail logging, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Check & Log Email – Easy Email Testing & Mail logging
6 fiches
Check & Log Email – Easy Email Testing & Mail logging < 2.0.13 – Unauthenticated Stored Cross-Site Scripting
The Check & Log Email – Easy Email Testing & Mail logging plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to 2.0.13 due to insufficient input sanitization and output escaping. This makes it possible…
[*, 2.0.13)
2.0.13
28/04/2026
Check & Log Email <= 1.0.9 – Unauthenticated Hook Injection
The Check & Log Email plugin for WordPress is vulnerable to Unauthenticated Hook Injection in all versions up to, and including, 1.0.9 via the check_nonce function. This makes it possible for unauthenticated attackers to execute actions with hooks…
*-1.0.9
1.0.10
25/03/2024
Check & Log email <= 1.0.5 – Reflected Cross-Site Scripting
The Check & Log Email WordPress plugin before 1.0.6 does not sanitise and escape a parameter before outputting it back in an attribute in an admin page, leading to a Reflected Cross-Site Scripting
*-1.0.5
1.0.6
02/05/2022
Check & Log Email <= 1.0.3 – Reflected Cross-Site Scripting
The Check & Log Email WordPress plugin before 1.0.4 does not escape the d parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting
[*, 1.0.4)
1.0.4
01/11/2021
Check & Log Email <= 1.0.2 – Admin+ SQL Injection via Order and OrderBy parameters
The Check & Log Email WordPress plugin before 1.0.3 does not validate and escape the "order" and "orderby" GET parameters before using them in a SQL statement when viewing logs, leading to SQL injections issues
*-1.0.2
1.0.3
27/09/2021
Check & Log Email <= 0.5.1 – Reflected Cross-Site Scripting
The check-email plugin before 0.5.2 for WordPress has XSS via several vulnerable parameters in the check-email/check-email.php file.
[*, 0.5.2)
0.5.2
12/11/2016
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.