VYPR

Prettylinks

by Caseproof

CVEs (4)

  • CVE-2015-9457HigOct 10, 2019
    risk 0.47cvss 7.2epss 0.02

    The pretty-link plugin before 1.6.8 for WordPress has PrliLinksController::list_links SQL injection via the group parameter.

  • CVE-2011-4595MedJan 10, 2020
    risk 0.43cvss 6.1epss 0.02

    Pretty-Link WordPress plugin 1.5.2 has XSS

  • CVE-2024-2326MedMar 23, 2024
    risk 0.28cvss 4.3epss 0.00

    The Pretty Links – Affiliate Links, Link Branding, Link Tracking & Marketing Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.6.3. This is due to missing or incorrect nonce validation when saving plugin settings.…

  • CVE-2013-1636Mar 12, 2014
    risk 0.00cvss epss 0.06

    Cross-site scripting (XSS) vulnerability in open-flash-chart.swf in Open Flash Chart (aka Open-Flash Chart), as used in the Pretty Link Lite plugin before 1.6.3 for WordPress, JNews (com_jnews) component 8.0.1 for Joomla!, and CiviCRM 3.1.0 through 4.2.9 and 4.3.0 through 4.3.3,…