VYPR
Vendor

Quadlayers

Products
4
CVEs
5
Across products
7
Status
Private

Products

4

Recent CVEs

5
  • CVE-2019-15779HigAug 29, 2019
    risk 0.57cvss 8.8epss 0.01

    The insta-gallery plugin before 2.4.8 for WordPress has no nonce validation for qligg_dismiss_notice or qligg_form_item_delete.

  • CVE-2025-58686HigSep 22, 2025
    risk 0.55cvss 8.5epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in quadlayers Perfect Brands for WooCommerce perfect-woocommerce-brands allows SQL Injection.This issue affects Perfect Brands for WooCommerce: from n/a through <= 3.6.2.

  • CVE-2022-2361MedAug 22, 2022
    risk 0.31cvss 4.8epss 0.01

    The WP Social Chat WordPress plugin before 6.0.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks.

  • CVE-2022-23982MedFeb 18, 2022
    risk 0.28cvss 4.3epss 0.01

    The vulnerability discovered in WordPress Perfect Brands for WooCommerce plugin (versions <= 2.0.4) allows server information exposure.

  • CVE-2022-23981MedFeb 18, 2022
    risk 0.28cvss 4.3epss 0.01

    The vulnerability allows Subscriber+ level users to create brands in WordPress Perfect Brands for WooCommerce plugin (versions <= 2.0.4).