cleantalk

Vulnerabilities and Security Researches

Security reports for wp-auctions

CVE/PSC Application Date Affected versions Description Details
Actual on: Jan 10, 2025, 01:01:37
Entries count: 3

CVE-2024-54207

WordPress Auction Plugin

vulnerable

Dec 08, 2024, 11:12:49
Min -
Max 3.7
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Owen Cutajar & Hyder Jaffari WordPress Auction Plugin allows Stored XSS.This issue affects WordPress Auction Plugin: from n/a through 3.7.

CVE-2024-51615

WordPress Auction Plugin

vulnerable

Dec 08, 2024, 11:12:49
Min -
Max 3.7
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Owen Cutajar & Hyder Jaffari WordPress Auction Plugin allows SQL Injection.This issue affects WordPress Auction Plugin: from n/a through 3.7.

CVE-2025-22349

WordPress Auction Plugin

vulnerable

Jan 09, 2025, 07:01:59
Min -
Max 3.7
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Owen Cutajar & Hyder Jaffari WordPress Auction Plugin allows SQL Injection.This issue affects WordPress Auction Plugin: from n/a through 3.7.