Vulnerabilities > Tablepress

DATE CVE VULNERABILITY TITLE RISK
2024-06-07 CVE-2024-4354 Server-Side Request Forgery (SSRF) vulnerability in Tablepress
The TablePress – Tables in WordPress made easy plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.3 via the get_files_to_import() function.
network
low complexity
tablepress CWE-918
6.4
2024-01-30 CVE-2024-23825 Server-Side Request Forgery (SSRF) vulnerability in Tablepress
TablePress is a table plugin for Wordpress.
network
low complexity
tablepress CWE-918
4.9
2020-01-09 CVE-2019-20180 Improper Neutralization of Formula Elements in a CSV File vulnerability in Tablepress
The TablePress plugin 1.9.2 for WordPress allows tablepress[data] CSV injection by Editor users.
network
low complexity
tablepress CWE-1236
6.8
2017-11-17 CVE-2017-10889 XXE vulnerability in Tablepress
TablePress prior to version 1.8.1 allows an attacker to conduct XML External Entity (XXE) attacks via unspecified vectors.
network
low complexity
tablepress CWE-611
4.3