← Back

Easy Modal

easy_modal

Vendor: Easymodal Project • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Easymodal Project
1Easy Modal
May 13, 2026
Aug 18, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
classes\controller\admin\modals.php in the Easy Modal plugin before 2.1.0 for WordPress has SQL injection in an untrash action with the id, ids, or modal parameter to wp-admin/admin.php, exploitable by administrators.
1Easymodal Project
1Easy Modal
May 13, 2026
Aug 18, 2017
N/A· v4
7.2 HIGH· v3
6.5 MEDIUM· v2
classes\controller\admin\modals.php in the Easy Modal plugin before 2.1.0 for WordPress has SQL injection in a delete action with the id, ids, or modal parameter to wp-admin/admin.php, exploitable by administrators.