Vulnerabilities > Davidlingren > Media Library Assistant > High

DATE CVE VULNERABILITY TITLE RISK
2024-11-04 CVE-2024-51661 OS Command Injection vulnerability in Davidlingren Media Library Assistant
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in David Lingren Media Library Assistant allows Command Injection.This issue affects Media Library Assistant: from n/a through 3.19.
network
low complexity
davidlingren CWE-78
7.2
2020-04-13 CVE-2020-11732 Unspecified vulnerability in Davidlingren Media Library Assistant
The Media Library Assistant plugin before 2.82 for Wordpress suffers from a Local File Inclusion vulnerability in mla_gallery link=download.
network
low complexity
davidlingren
7.5