Vulnerabilities > Commoninja

DATE CVE VULNERABILITY TITLE RISK
2023-08-14 CVE-2023-28535 Cross-site Scripting vulnerability in Commoninja Paytm Payment Donation
Unauth.
network
low complexity
commoninja CWE-79
6.1
2022-04-25 CVE-2022-1392 Path Traversal vulnerability in Commoninja Videos Sync PDF
The Videos sync PDF WordPress plugin through 1.7.4 does not validate the p parameter before using it in an include statement, which could lead to Local File Inclusion issues
network
low complexity
commoninja CWE-22
5.0