← Back

Wpdatatables

wpdatatables

2 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Wpdatatables
wpdatatables

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Wpdatatables
1Wpdatatables
Jun 17, 2026
Feb 8, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
wpDataTables before 3.4.1 mishandles order direction for server-side tables, aka admin-ajax.php?action=get_wdtable order[0][dir] SQL injection.
1Wpdatatables
1Wpdatatables
May 6, 2026
Dec 2, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in wpdatatables.php in the wpDataTables plugin 1.5.3 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the table_id parameter in a get_wdtable action to w...Show more
SQL injection vulnerability in wpdatatables.php in the wpDataTables plugin 1.5.3 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the table_id parameter in a get_wdtable action to wp-admin/admin-ajax.php.Show less