- WordPress Plugin WP AmASIN-The Amazon Affiliate Shop is prone to a directory traversal vulnerability because it fails to sufficiently sanitize user-supplied input. Exploiting this issue can allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin WP AmASIN-The Amazon Affiliate Shop version 0.9.6 is vulnerable; prior versions may also be affected.
- Update to plugin version 0.9.7 or latest
- WordPress Plugin Custom Post Types and Custom Fields creator-WCK Multiple Unspecified Vulnerabilities (1.2.9)
- WordPress Plugin Search Everything SQL Injection (8.1.6)
- WordPress Plugin Aesop Story Engine Cross-Site Scripting (1.6)
- WordPress Plugin MobileView by ColorLabs & Company Cross-Site Scripting (1.0.7)
- WordPress Plugin Placemarks Cross-Site Scripting (2.0.0)