📦 Userswp

by Ayecode

🔍 What is Userswp?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-6265

CRITICAL CVSS 9.8 Jun 29, 2024

This vulnerability allows unauthenticated attackers to perform time-based SQL injection attacks on WordPress sites using the UsersWP plugin. Attackers can extract sensitive database information by man...

CVE-2024-6477

HIGH CVSS 7.5 Aug 3, 2024

The UsersWP WordPress plugin before version 1.2.12 generates predictable filenames for admin export files, allowing unauthenticated attackers to download these files and access sensitive user informat...