Filtered by vendor Ajax Search Project Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-38456 1 Ajax Search Project 1 Ajax Search 2025-01-13 4.3 Medium
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Ernest Marcinko Ajax Search Lite pluginĀ <= 4.10.3 versions.
CVE-2024-7084 1 Ajax Search Project 1 Ajax Search 2024-11-01 4.8 Medium
The Ajax Search Lite WordPress plugin before 4.12.1 does not sanitise and escape some parameters, which could allow users with a role as low as Admin+ to perform Cross-Site Scripting attacks.