Envo Extra

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Access violation vulnerability in Envo Extra 1.9.9

    Fixed

    The Envo Extra plugin for WordPress has a security issue that allows unauthorized changes to be made to the data. This happens because the save_domain_switcher_ajax() function, which is used in versi...

    Read More
  • Access violation vulnerability in Envo Extra 1.9.3

    Fixed

    The Envo Extra plugin for WordPress has a security issue that allows anyone with Contributor-level access or higher to see private or draft posts created with Elementor. This can lead to the exposure...

    Read More
  • Input validation vulnerability in Envo Extra 1.8.23

    Fixed

    The Envo Extra plugin for WordPress has a security issue that could allow hackers to inject harmful scripts into web pages. This can happen because the plugin does not properly clean or protect again...

    Read More
  • Input validation vulnerability in Envo Extra 1.8.16

    Fixed

    The Envo Extra plugin for WordPress has a security issue that allows attackers to inject harmful code into web pages. This can happen because the plugin does not properly clean up the input and outpu...

    Read More
  • Input validation vulnerability in Envo Extra 1.8.11

    Fixed

    The Envo Extra plugin for WordPress has a security issue called Stored Cross-Site Scripting. This can happen in any version up to 1.8.11 because the plugin does not properly clean or protect user-sup...

    Read More
  • Input validation vulnerability in Envo Extra 1.8.4

    Fixed

    The Envo Extra plugin for WordPress is vulnerable to a security issue called Cross-Site Request Forgery. This issue affects versions up to and including version 1.8.3. The problem is caused by either...

    Read More