Vulnerabilities > Permalink Manager Lite Project > Permalink Manager Lite > 2.4.3.3

DATE CVE VULNERABILITY TITLE RISK
2024-08-28 CVE-2024-8195 Missing Authorization vulnerability in Permalink Manager Lite Project Permalink Manager Lite
The Permalink Manager Lite plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'debug_data', 'debug_query', and 'debug_redirect' functions in all versions up to, and including, 2.4.4.
network
low complexity
permalink-manager-lite-project CWE-862
5.3
2024-07-22 CVE-2024-37257 Unspecified vulnerability in Permalink Manager Lite Project Permalink Manager Lite
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Maciej Bis Permalink Manager Lite allows Reflected XSS.This issue affects Permalink Manager Lite: from n/a through 2.4.3.3.
network
low complexity
permalink-manager-lite-project
6.1