CVE-2025-26918
- EPSS 0.19%
- Veröffentlicht 03.03.2025 14:15:56
- Zuletzt bearbeitet 01.04.2026 17:19:09
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in enituretechnology Small Package Quotes – Unishippers Edition small-package-quotes-unishippers-edition allows Reflected XSS.This issue affects Small ...
CVE-2024-13491
- EPSS 0.12%
- Veröffentlicht 19.02.2025 12:15:31
- Zuletzt bearbeitet 25.02.2025 20:33:23
The Small Package Quotes – For Customers of FedEx plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and including, 4.3.1 due to insufficient escaping on the user supplied pa...
CVE-2024-13533
- EPSS 0.15%
- Veröffentlicht 19.02.2025 12:15:31
- Zuletzt bearbeitet 25.02.2025 20:37:27
The Small Package Quotes – USPS Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, and including, 1.3.5 due to insufficient escaping on the user supplied parameter and lack of sufficient pre...
CVE-2024-13534
- EPSS 0.12%
- Veröffentlicht 19.02.2025 12:15:31
- Zuletzt bearbeitet 08.04.2026 19:20:18
The Small Package Quotes – Worldwide Express Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and including, 5.2.18 due to insufficient escaping on the user supplie...
CVE-2024-13532
- EPSS 0.22%
- Veröffentlicht 12.02.2025 12:15:29
- Zuletzt bearbeitet 08.04.2026 18:20:07
The Small Package Quotes – Purolator Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and including, 3.6.4 due to insufficient escaping on the user supplied paramet...
CVE-2024-13475
- EPSS 0.7%
- Veröffentlicht 12.02.2025 10:15:11
- Zuletzt bearbeitet 25.02.2025 20:37:56
The Small Package Quotes – UPS Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, and including, 4.5.16 due to insufficient escaping on the user supplied parameter and lack of sufficient pre...