Vulnerabilities > Sedlex > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-01-17 CVE-2022-41619 Unspecified vulnerability in Sedlex Image Zoom 1.8.8
Missing Authorization vulnerability in SedLex Image Zoom.This issue affects Image Zoom: from n/a through 1.8.8.
network
low complexity
sedlex
6.5
2024-01-17 CVE-2022-41695 Unspecified vulnerability in Sedlex Traffic Manager 1.4.5
Missing Authorization vulnerability in SedLex Traffic Manager.This issue affects Traffic Manager: from n/a through 1.4.5.
network
low complexity
sedlex
6.5
2022-11-10 CVE-2022-42460 Unspecified vulnerability in Sedlex Traffic Manager 1.4.5
Broken Access Control vulnerability leading to Stored Cross-Site Scripting (XSS) in Traffic Manager plugin <= 1.4.5 on WordPress.
network
low complexity
sedlex
5.4
2022-09-21 CVE-2022-40219 Unspecified vulnerability in Sedlex Favicon-Switcher
Cross-Site Request Forgery (CSRF) vulnerability in SedLex FavIcon Switcher plugin <= 1.2.11 at WordPress allows plugin settings change.
network
low complexity
sedlex
4.3
2022-03-14 CVE-2022-22734 Improper Encoding or Escaping of Output vulnerability in Sedlex Simple Quotation 1.3.2
The Simple Quotation WordPress plugin through 1.3.2 does not have CSRF check when creating or editing a quote and does not sanitise and escape Quotes.
network
low complexity
sedlex CWE-116
6.1