VendorsInvite Anyone Projectinvite_anyoneany version
Vulnerabilities

Invite Anyone Project Invite Anyone any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2017-18543
The invite-anyone plugin before 1.3.16 for WordPress has incorrect access control for email-based invitations.
Published 2019-08-16 · Modified
9.8EPSS 0.018
CVE-2017-18544
The invite-anyone plugin before 1.3.16 for WordPress has admin-panel CSRF.
Published 2019-08-16 · Modified
8.8EPSS 0.006
CVE-2017-18545
The invite-anyone plugin before 1.3.16 for WordPress has incorrect escaping of untrusted Dashboard and front-end input.
Published 2019-08-16 · Modified
7.5EPSS 0.013