Vulnerabilities > Awesomemotive

DATE CVE VULNERABILITY TITLE RISK
2023-12-26 CVE-2023-6114 Files or Directories Accessible to External Parties vulnerability in Awesomemotive Duplicator
The Duplicator WordPress plugin before 1.5.7.1, Duplicator Pro WordPress plugin before 4.5.14.2 does not disallow listing the `backups-dup-lite/tmp` directory (or the `backups-dup-pro/tmp` directory in the Pro version), which temporarily stores files containing sensitive data.
network
low complexity
awesomemotive CWE-552
7.5
2023-07-12 CVE-2023-3081 Unspecified vulnerability in Awesomemotive WP Mail Logging
The WP Mail Logging plugin for WordPress is vulnerable to Stored Cross-Site Scripting via email contents in versions up to, and including, 1.11.1 due to insufficient input sanitization and output escaping.
network
low complexity
awesomemotive
6.1
2023-05-28 CVE-2023-33309 Cross-site Scripting vulnerability in Awesomemotive Duplicator
Unauth.
network
low complexity
awesomemotive CWE-79
6.1