Vulnerabilities > Jamesward

DATE CVE VULNERABILITY TITLE RISK
2023-12-28 CVE-2023-50844 SQL Injection vulnerability in Jamesward WP Mail Catcher
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in James Ward Mail logging – WP Mail Catcher.This issue affects Mail logging – WP Mail Catcher: from n/a through 2.1.3.
network
low complexity
jamesward CWE-89
7.2
2023-07-12 CVE-2023-3080 Unspecified vulnerability in Jamesward WP Mail Catcher
The WP Mail Catcher plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions up to, and including, 2.1.2 due to insufficient input sanitization and output escaping.
network
low complexity
jamesward
6.1