CVEs (5)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Cleantalk 1Spam Protection, Antispam, Firewall Jul 12, 2025 Nov 26, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 The Spam protection, Anti-Spam, FireWall by CleanTalk plugin for WordPress is vulnerable to unauthorized Arbitrary Plugin Installation due to an missing empty value check on the 'api_key' value in the 'perform' function...Show more |
1Cleantalk 1Spam Protection, Antispam, Firewall Apr 28, 2026 Jan 5, 2024 N/A· v4 8.8 HIGH· v3 N/A· v2 Cross-Site Request Forgery (CSRF) vulnerability in СleanTalk - Anti-Spam Protection Spam protection, Anti-Spam, FireWall by CleanTalk.This issue affects Spam protection, Anti-Spam, FireWall by CleanTalk: from n/a through...Show more |
1Cleantalk 1Spam Protection, Antispam, Firewall May 9, 2025 Oct 25, 2022 N/A· v4 7.2 HIGH· v3 N/A· v2 The Spam protection, AntiSpam, FireWall by CleanTalk WordPress plugin before 5.185.1 does not validate ids before using them in a SQL statement, which could lead to SQL injection exploitable by high privilege users such...Show more |
1Cleantalk 1Spam Protection, Antispam, Firewall Nov 21, 2024 May 17, 2021 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 It was possible to exploit an Unauthenticated Time-Based Blind SQL Injection vulnerability in the Spam protection, AntiSpam, FireWall by CleanTalk WordPress Plugin before 5.153.4. The update_log function in lib/Cleantalk...Show more |
1Cleantalk 1Spam Protection, Antispam, Firewall Nov 21, 2024 Nov 13, 2019 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 The CleanTalk cleantalk-spam-protect plugin before 5.127.4 for WordPress is affected by: Cross Site Scripting (XSS). The impact is: Allows an attacker to execute arbitrary HTML and JavaScript code via the from or till pa...Show more |