Wpo-hr

Ngg Smart Image Search

4 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.03%
  • Published 22.09.2025 18:23:56
  • Last modified 22.09.2025 21:22:16

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpo-HR NGG Smart Image Search allows Stored XSS. This issue affects NGG Smart Image Search: from n/a through 3.4.3.

  • EPSS 0.05%
  • Published 04.07.2025 11:17:51
  • Last modified 08.07.2025 16:18:53

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpo-HR NGG Smart Image Search allows SQL Injection. This issue affects NGG Smart Image Search: from n/a through 3.4.1.

  • EPSS 0.02%
  • Published 07.05.2025 14:19:57
  • Last modified 08.05.2025 14:39:18

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpo-HR NGG Smart Image Search allows Stored XSS. This issue affects NGG Smart Image Search: from n/a through 3.3.3.

  • EPSS 0.04%
  • Published 12.02.2025 05:15:12
  • Last modified 24.02.2025 15:49:58

The NGG Smart Image Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'hr_SIS_nextgen_searchbox' shortcode in all versions up to, and including, 3.2.1 due to insufficient input sanitization and output escaping ...