Vulnerabilities > Search Exclude Project

DATE CVE VULNERABILITY TITLE RISK
2022-08-23 CVE-2022-36282 Cross-site Scripting vulnerability in Search Exclude Project Search Exclude
Authenticated (editor+) Stored Cross-Site Scripting (XSS) vulnerability in Roman Pronskiy's Search Exclude plugin <= 1.2.6 at WordPress.
network
low complexity
search-exclude-project CWE-79
5.4
2019-09-09 CVE-2019-15895 Missing Authentication for Critical Function vulnerability in Search Exclude Project Search Exclude
search-exclude.php in the "Search Exclude" plugin before 1.2.4 for WordPress allows unauthenticated options changes.
network
low complexity
search-exclude-project CWE-306
7.5