VendorsWPVibeswp_mail_logall versions
Vulnerabilities

WPVibes WP Mail Log 1.0.2 for WordPress

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

8CVEs
CVE-2023-51410
WordPress WP Mail Log Plugin <= 1.1.2 is vulnerable to Arbitrary File Upload
Published 2023-12-29 · Modified
9.9EPSS 0.006
CVE-2023-5674
WP Mail Log < 1.1.3 – Contributor+ SQL Injection in wml_logs/send_mail endpoint
Published 2023-12-26 · Modified
8.8EPSS 0.108
CVE-2023-5673
WP Mail Log < 1.1.3 – Contributor+ Arbitrary File Upload to RCE
Published 2023-12-26 · Modified
8.8EPSS 0.011
CVE-2023-5645
WP Mail Log < 1.1.3 – Contributor+ SQL Injection in wml_logs endpoint
Published 2023-12-26 · Modified
8.8EPSS 0.007
CVE-2022-45807
WordPress WP Mail Log Plugin <= 1.0.1 is vulnerable to Cross Site Request Forgery (CSRF)
Published 2023-02-02 · Modified
8.8EPSS 0.003
CVE-2023-5644
WP Mail Log < 1.1.3 – Incorrect Authorization in REST API Endpoints
Published 2023-12-26 · Modified
7.6EPSS 0.005
CVE-2023-3088
WP Mail Log <= 1.1.1 - Unauthenticated Stored Cross-Site Scripting via Email
Published 2023-07-12 · Modified
7.2EPSS 0.005
CVE-2023-5672
WP Mail Log < 1.1.3 – Contributor+ LFI in wml_logs/send_mail endpoint
Published 2023-12-26 · Modified
6.5EPSS 0.007