VendorsTrigigpressany version
Vulnerabilities

Tri Modern Tribe GigPress any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2023-0381
GigPress <= 2.3.28 - Subscriber+ SQLi
Published 2023-02-27 · Modified
8.8EPSS 0.013
CVE-2015-9353
The gigpress plugin before 2.3.11 for WordPress has SQL injection in the admin area, a different vulnerability than CVE-2015-4066.
Published 2019-08-28 · Modified
7.2EPSS 0.014
CVE-2022-4759
GigPress < 2.3.28 - Contributor+ Stored XSS via Shortcode
Published 2023-02-13 · Modified
6.8EPSS 0.007
CVE-2015-4066
Multiple SQL injection vulnerabilities in admin/handlers.php in the GigPress plugin before 2.3.9 for WordPress allow remote authenticated users to execute arbitrary SQL commands via the (1) show_artist_id or (2) show_venue_id parameter in an add action in the gigpress.php page to wp-admin/admin.php.
Published 2015-05-27 · Modified
6.51 PoCEPSS 0.042
CVE-2015-9354
The gigpress plugin before 2.3.11 for WordPress has XSS.
Published 2019-08-28 · Analyzed
4.8EPSS 0.007
CVE-2023-7233
GigPress <= 2.3.29 - Admin+ Stored Cross Site Scripting
Published 2024-02-12 · Modified
4.8EPSS 0.005