VendorsCodectionimport_and_export_users_and_customersall versions
Vulnerabilities

Codection Import And Export Users And Customers

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2020-22277
Import and export users and customers WordPress Plugin through 1.15.5.11 allows CSV injection via a customer's profile.
Published 2020-11-04 · Modified
8.0EPSS 0.019
CVE-2022-3558
Import and export users and customers < 1.20.5 - Subscriber+ CSV Injection
Published 2022-11-07 · Modified
8.0EPSS 0.011
CVE-2023-6583
Import and export users and customers <= 1.24.2 - Authenticated(Administrator+) Directory Traversal via Recurring Import Functionality
Published 2024-01-11 · Modified
7.2EPSS 0.008
CVE-2023-6624
Import and export users and customers <= 1.24.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via shortcode
Published 2024-01-11 · Modified
5.4EPSS 0.003
CVE-2024-22151
WordPress Import and export users and customers plugin <= 1.24.6 - Broken Access Control vulnerability
Published 2024-06-08 · Analyzed
5.3EPSS 0.003
CVE-2022-1255
Import and export users and customers < 1.19.2.1 - Admin+ Stored Cross-Site Scripting
Published 2022-05-02 · Modified
4.8EPSS 0.007