VYPR

Sogrid

by WordPress

Source repositories

CVEs (3)

  • CVE-2024-54352HigDec 16, 2024
    risk 0.57cvss 8.8epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in Sabri Sogrid sogrid allows Privilege Escalation.This issue affects Sogrid: from n/a through <= 1.5.2.

  • CVE-2024-54374HigDec 16, 2024
    risk 0.50cvss 7.5epss 0.21

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Sabri Sogrid sogrid allows PHP Local File Inclusion.This issue affects Sogrid: from n/a through <= 1.5.6.

  • CVE-2024-8392HigOct 26, 2024
    risk 0.40cvss 7.2epss 0.00

    The WordPress Post Grid Layouts with Pagination – Sogrid plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.5.6 via the 'tab' parameter. This makes it possible for authenticated attackers, with Administrator-level access and…