📦 Stafflist

by Era404

🔍 What is Stafflist?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-1556

CRITICAL CVSS 9.8 May 30, 2022

This vulnerability allows attackers to execute arbitrary SQL commands on WordPress sites using the StaffList plugin before version 3.1.5. The SQL injection occurs when searching for staff members in t...

CVE-2024-13749

MEDIUM CVSS 6.1 Feb 12, 2025

The StaffList WordPress plugin up to version 3.2.3 has a CSRF vulnerability that allows unauthenticated attackers to trick administrators into performing actions that update plugin settings or inject ...