Vulnerabilities > Smackcoders > Ultimate Exporter > 1.0

DATE CVE VULNERABILITY TITLE RISK
2019-09-20 CVE-2016-11000 SQL Injection vulnerability in Smackcoders Ultimate Exporter 1.0/1.1
The wp-ultimate-exporter plugin through 1.1 for WordPress has SQL injection via the export_type_name parameter.
network
low complexity
smackcoders CWE-89
7.5
2019-08-14 CVE-2018-20968 Cross-Site Request Forgery (CSRF) vulnerability in Smackcoders Ultimate Exporter
The wp-ultimate-exporter plugin before 1.4.2 for WordPress has CSRF.
6.8