Vulnerabilities > Vjinfotech

DATE CVE VULNERABILITY TITLE RISK
2023-11-16 CVE-2023-47687 Cross-Site Request Forgery (CSRF) vulnerability in Vjinfotech WOO Custom and Sequential Order Number
Cross-Site Request Forgery (CSRF) vulnerability in VJInfotech Woo Custom and Sequential Order Number plugin <= 2.6.0 versions.
network
low complexity
vjinfotech CWE-352
8.8
2022-01-18 CVE-2022-0236 Missing Authorization vulnerability in Vjinfotech WP Import Export and WP Import Export Lite
The WP Import Export WordPress plugin (both free and premium versions) is vulnerable to unauthenticated sensitive data disclosure due to a missing capability check on the download function wpie_process_file_download found in the ~/includes/classes/class-wpie-general.php file.
network
low complexity
vjinfotech CWE-862
5.0