cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forhistory-log-by-click5 history-log-by-click5

Direction: descending
Apr 03, 2025

History Log by click5 # CVE-2025-31531

CVE, Research URL

CVE-2025-31531

Application

History Log by click5

Date
Apr 02, 2025
Research Description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in click5 History Log by click5 allows SQL Injection. This issue affects History Log by click5: from n/a through 1.0.13.
Affected versions
Min -, max -.
Status
vulnerable
Jun 07, 2024

History Log by click5 # CVE-2023-5082

CVE, Research URL

CVE-2023-5082

Application

History Log by click5

Date
Nov 07, 2023
Research Description
The History Log by click5 WordPress plugin before 1.0.13 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by admin users when using the Smash Balloon Social Photo Feed plugin alongside it.
Affected versions
Min -, max -.
Status
vulnerable