Vulnerabilities > Cozmoslabs > Translatepress > 1.1.9

DATE CVE VULNERABILITY TITLE RISK
2022-09-19 CVE-2022-3141 SQL Injection vulnerability in Cozmoslabs Translatepress
The Translate Multilingual sites WordPress plugin before 2.3.3 is vulnerable to an authenticated SQL injection.
network
low complexity
cozmoslabs CWE-89
8.8
2021-09-27 CVE-2021-24610 Cross-site Scripting vulnerability in Cozmoslabs Translatepress
The TranslatePress WordPress plugin before 2.0.9 does not implement a proper sanitisation on the translated strings.
network
cozmoslabs CWE-79
3.5