Vulnerabilities > Lanacodes

DATE CVE VULNERABILITY TITLE RISK
2023-07-12 CVE-2023-3166 Unspecified vulnerability in Lanacodes Lana Email Logger 1.0.2
The Lana Email Logger plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an email subject in versions up to, and including, Lana Email Logger due to insufficient input sanitization and output escaping.
network
low complexity
lanacodes
6.1
2023-06-24 CVE-2023-3387 Unspecified vulnerability in Lanacodes Lana Text to Image 1.0.0
The Lana Text to Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'lana_text_to_image' and 'lana_text_to_img' shortcode in versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping on user supplied attributes.
network
low complexity
lanacodes
5.4