VendorsCodectionclean_loginall versions
Vulnerabilities

Codection Clean Login

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2024-8252
Clean Login <= 1.14.5 - Authenticated (Contributor+) Local File Inclusion
Published 2024-08-30 · Analyzed
8.8EPSS 0.030
CVE-2017-8875
CSRF in the Clean Login plugin before 1.8 for WordPress allows remote attackers to change the login redirect URL or logout redirect URL.
Published 2017-05-10 · Modified
6.5EPSS 0.006
CVE-2015-9336
The clean-login plugin before 1.5.1 for WordPress has reflected XSS.
Published 2019-08-22 · Modified
6.1EPSS 0.009
CVE-2022-4838
Clean Login < 1.13.7 - Contributor+ Stored XSS via Shortcode
Published 2023-02-06 · Modified
5.4EPSS 0.006