Vulnerabilities > Emarketdesign > High

DATE CVE VULNERABILITY TITLE RISK
2023-10-03 CVE-2023-40558 Unspecified vulnerability in Emarketdesign Youtube Video Gallery
Cross-Site Request Forgery (CSRF) vulnerability in eMarket Design YouTube Video Gallery by YouTube Showcase plugin <= 3.3.5 versions.
network
low complexity
emarketdesign
8.8
2022-07-25 CVE-2022-2240 Unspecified vulnerability in Emarketdesign Request a Quote
The Request a Quote WordPress plugin through 2.3.7 does not validate uploaded CSV files, allowing unauthenticated users to attach a malicious CSV file to a quote, which could lead to a CSV injection once an admin download and open it
network
low complexity
emarketdesign
8.8