Vulnerabilities > Webtechideas

DATE CVE VULNERABILITY TITLE RISK
2020-05-05 CVE-2020-8799 Cross-site Scripting vulnerability in Webtechideas WTI Like Post
A Stored XSS vulnerability has been found in the administration page of the WTI Like Post plugin through 1.4.5 for WordPress.
network
low complexity
webtechideas CWE-79
4.8
2019-10-10 CVE-2015-9466 SQL Injection vulnerability in Webtechideas WTI Like Post
The wti-like-post plugin before 1.4.3 for WordPress has WtiLikePostProcessVote SQL injection via the HTTP_CLIENT_IP, HTTP_X_FORWARDED_FOR, HTTP_X_FORWARDED, HTTP_FORWARDED_FOR, or HTTP_FORWARDED variable.
network
low complexity
webtechideas CWE-89
critical
9.8