| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-5882 | WP All Export (Free < 1.4.1, Pro < 1.8.6) - Remote Code Execution via CSRF | Unknown | Export any WordPress data to XML/CSV | - | - | 2023-12-18 20:08:05 | Deep Dive |
| CVE-2023-4724 | WP All Export (Free < 1.4.0, Pro < 1.8.6) - Admin+ RCE | Unknown | Export any WordPress data to XML/CSV | - | - | 2023-12-18 20:08:04 | Deep Dive |
| CVE-2023-5886 | WP All Export (Free < 1.4.1, Pro < 1.8.6) - Author+ PHAR Deserialization via CSRF | Unknown | Export any WordPress data to XML/CSV | - | - | 2023-12-18 20:07:58 | Deep Dive |
| CVE-2023-49775 | WordPress CSV Importer Plugin <= 0.3.8 is vulnerable to Cross Site Request Forgery (CSRF) | Denis Kobozev | CSV Importer | Medium | 4.3 | 2023-12-17 10:05:28 | Deep Dive |
| CVE-2023-5096 | HTML filter and csv-file search <= 2.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | jonashjalmarsson | HTML filter and csv-file search | Medium | 6.4 | 2023-11-22 15:33:21 | Deep Dive |
| CVE-2022-41616 | WordPress Export Users Data CSV Plugin <= 2.1 is vulnerable to CSV Injection | Kaushik Kalathiya | Export Users Data CSV | High | 7.6 | 2023-11-07 17:17:02 | Deep Dive |
| CVE-2022-38702 | WordPress WP CSV Exporter Plugin <= 2.0 is vulnerable to CSV Injection | Nakashima Masahiro | WP CSV Exporter | Medium | 5.8 | 2023-11-07 17:14:12 | Deep Dive |
| CVE-2022-42882 | WordPress Simple CSV/XLS Exporter Plugin <= 1.5.8 is vulnerable to CSV Injection | Shambix | Simple CSV/XLS Exporter | Medium | 5.8 | 2023-11-07 17:11:35 | Deep Dive |
| CVE-2023-36527 | WordPress Post to CSV by BestWebSoft Plugin <= 1.4.0 is vulnerable to CSV Injection | BestWebSoft | Post to CSV by BestWebSoft | Medium | 4.7 | 2023-11-07 16:04:27 | Deep Dive |
| CVE-2023-5099 | HTML filter and csv-file search <= 2.7 - Authenticated (Contributor+) Local File Inclusion via Shortcode | jonashjalmarsson | HTML filter and csv-file search | High | 8.8 | 2023-10-31 11:29:13 | Deep Dive |
| CVE-2015-10125 | WP Ultimate CSV Importer Plugin cross-site request forgery | - | WP Ultimate CSV Importer Plugin | Medium | 4.3 | 2023-10-05 22:31:04 | Deep Dive |
| CVE-2023-31221 | WordPress PDQ CSV Plugin <= 1.0.0 is vulnerable to Cross Site Scripting (XSS) | Ransom Christofferson | PDQ CSV | Medium | 5.9 | 2023-08-08 12:47:00 | Deep Dive |
| CVE-2023-4142 | WP Ultimate CSV Importer <= 7.9.8 - Authenticated (Author+) Remote Code Execution | smackcoders | WP Ultimate CSV Importer – Import CSV, XML & Excel into WordPress | High | 8.0 | 2023-08-04 02:04:31 | Deep Dive |
| CVE-2023-4141 | WP Ultimate CSV Importer <= 7.9.8 - Authenticated (Author+) PHP File Creation to Remote Code Execution | smackcoders | WP Ultimate CSV Importer – Import CSV, XML & Excel into WordPress | High | 8.0 | 2023-08-04 02:04:29 | Deep Dive |
| CVE-2023-4139 | WP Ultimate CSV Importer <= 7.9.8 - Sensitive Information Exposure via Directory Listing | smackcoders | WP Ultimate CSV Importer – Import CSV, XML & Excel into WordPress | High | 7.5 | 2023-08-04 02:04:27 | Deep Dive |
| CVE-2023-4140 | WP Ultimate CSV Importer <= 7.9.8 - Arbitrary Usermeta Update to Authenticated (Author+) Privilege Escalation | smackcoders | WP Ultimate CSV Importer – Import CSV, XML & Excel into WordPress | Medium | 6.6 | 2023-08-04 02:04:25 | Deep Dive |
| CVE-2022-47163 | WordPress WP CSV to Database Plugin <= 2.6 is vulnerable to Cross Site Request Forgery (CSRF) | Tips and Tricks HQ, josh401 | WP CSV to Database – Insert CSV file content into WordPress database | Low | 3.1 | 2023-03-14 06:48:02 | Deep Dive |
| CVE-2022-4368 | WP CSV <= 1.8.0.0 - Reflected XSS via CSV Import | Unknown | WP CSV | 中危 | - | 2023-01-09 22:13:45 | Deep Dive |
| CVE-2022-3605 | WP CSV Exporter < 1.3.7 - CSV Injection | Unknown | WP CSV Exporter | 高危 | - | 2022-12-12 17:54:47 | Deep Dive |
| CVE-2022-3853 | Supra CSV <= 4.0.3 - Stored Cross-Site Scripting via CSRF | Unknown | Supra CSV | 中危 | - | 2022-12-12 17:54:46 | Deep Dive |