VendorsK-78broken_link_managerall versions
Vulnerabilities

K-78 Broken Link Manager

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2015-9467
The broken-link-manager plugin before 0.5.0 for WordPress has wpslDelURL or wpslEditURL SQL injection via the url parameter.
Published 2019-10-10 · Modified
9.8EPSS 0.024
CVE-2015-9453
The broken-link-manager plugin before 0.6.0 for WordPress has XSS via the HTTP Referer or User-Agent header to a URL that does not exist.
Published 2019-10-07 · Modified
6.1EPSS 0.015
CVE-2015-9468
The broken-link-manager plugin 0.4.5 for WordPress has XSS via the page parameter in a delURL action.
Published 2019-10-10 · Modified
6.1EPSS 0.010