Vulnerabilities > Wpdeveloper > Notificationx

DATE CVE VULNERABILITY TITLE RISK
2023-07-01 CVE-2020-36744 Unspecified vulnerability in Wpdeveloper Notificationx
The NotificationX plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.8.2.
network
low complexity
wpdeveloper
4.3
2022-03-07 CVE-2022-0349 SQL Injection vulnerability in Wpdeveloper Notificationx
The NotificationX WordPress plugin before 2.3.9 does not sanitise and escape the nx_id parameter before using it in a SQL statement, leading to an Unauthenticated Blind SQL Injection
network
low complexity
wpdeveloper CWE-89
7.5