VendorsWPDeveloperreviewxall versions
Vulnerabilities

WPDeveloper ReviewX

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2022-46809
WordPress ReviewX Plugin <= 1.6.7 is vulnerable to CSV Injection
Published 2023-11-07 · Modified
9.8EPSS 0.008
CVE-2024-43323
WordPress ReviewX plugin <= 1.6.28 - Broken Access Control vulnerability
Published 2024-11-01 · Modified
9.8EPSS 0.005
CVE-2023-2833
ReviewX <= 1.6.13 - Arbitrary Usermeta Update to Authenticated (Subscriber+) Privilege Escalation
Published 2023-06-06 · Modified
8.8EPSS 0.175
CVE-2023-26325
The 'rx_export_review' action in the ReviewX WordPress Plugin, is affected by an authenticated SQL injection vulnerability in the 'filterValue' and 'selectedColumns' parameters.
Published 2023-02-23 · Modified
8.8EPSS 0.009
CVE-2024-33921
WordPress ReviewX plugin <= 1.6.21 - Broken Access Control vulnerability
Published 2024-05-03 · Modified
8.8EPSS 0.004
CVE-2024-29812
WordPress ReviewX plugin <= 1.6.22 - Cross Site Scripting (XSS) vulnerability
Published 2024-03-27 · Modified
6.5EPSS 0.004
CVE-2023-40670
WordPress ReviewX plugin <= 1.6.17 - Broken Access Control vulnerability
Published 2024-12-13 · Modified
4.3EPSS 0.005
CVE-2024-3609
ReviewX – Multi-criteria Rating & Reviews for WooCommerce <= 1.6.27 - Missing Authorization
Published 2024-05-16 · Modified
4.3EPSS 0.004