Vulnerabilities > Appjetty

DATE CVE VULNERABILITY TITLE RISK
2023-11-06 CVE-2023-28748 SQL Injection vulnerability in Appjetty Copy or Move Comments
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in biztechc Copy or Move Comments allows SQL Injection.This issue affects Copy or Move Comments: from n/a through 5.0.4.
network
low complexity
appjetty CWE-89
critical
9.8
2023-10-25 CVE-2023-45634 Cross-site Scripting vulnerability in Appjetty Copy or Move Comments
Unauth.
network
low complexity
appjetty CWE-79
6.1
2023-01-16 CVE-2022-4295 Unspecified vulnerability in Appjetty Show ALL Comments
The Show All Comments WordPress plugin before 7.0.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against a logged in high privilege users such as admin.
network
low complexity
appjetty
6.1