Vulnerabilities > Bplugins > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-01-30 CVE-2024-1061 SQL Injection vulnerability in Bplugins Html5 Video Player
The 'HTML5 Video Player' WordPress Plugin, version < 2.5.25 is affected by an unauthenticated SQL injection vulnerability in the 'id' parameter in the  'get_view' function.
network
low complexity
bplugins CWE-89
critical
9.8