Products: 1
Vulnerabilities: 3
Known Exploited: 0
0
Critical Level Threats
2
High Level Threats
1
Medium Level Threats
0
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2023-40215
WordPress Demon image annotation Plugin <= 5.1 is vulnerable to SQL Injection
Last Modified: Apr 29, 2026
Published: Nov 03, 2023
CVE-2022-4171
demon image annotation <= 5.0 - Improper Input Restriction Validation
Last Modified: Apr 08, 2026
Published: Dec 13, 2022
CVE-2022-2864
The demon image annotation plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.7. This is due to missing nonce validation in the ~/includes/settings.php file. This makes it possible for unauthenticated attackers to modify the plugin's settings and inject malicious web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.
Last Modified: Jan 31, 2025
Published: Oct 28, 2022
Items Per Page
