Products: 1
Vulnerabilities: 4
Known Exploited: 0
0
Critical Level Threats
1
High Level Threats
3
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2026-18943
WPC Admin Columns < 2.3.4 - Subscriber+ Arbitrary User/Post/Term Meta Disclosure
Last Modified: Aug 14, 2026
Published: Aug 12, 2026
CVE-2021-24365
Admin Columns Free (< 4.3.2) & Pro (< 5.5.2) - Authenticated Stored Cross-Site Scripting (XSS) in Custom Field
Last Modified: Nov 21, 2024
Published: Jul 12, 2021
CVE-2021-24366
Admin Columns Free < 4.3 & Pro < 5.5.1 - Admin+ Stored XSS in Label
Last Modified: May 05, 2025
Published: Jun 21, 2021
CVE-2019-17661
A CSV injection in the codepress-admin-columns (aka Admin Columns) plugin 3.4.6 for WordPress allows malicious users to gain remote control of other computers. By choosing formula code as his first or last name, an attacker can create a user with a name that contains malicious code. Other users might download this data as a CSV file and corrupt their PC by opening it in a tool such as Microsoft Excel. The attacker could gain remote access to the user's PC.
Last Modified: Nov 21, 2024
Published: Nov 08, 2019
Items Per Page
