Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Daily_prayer_time
(Daily_prayer_time_project)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 4 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2023-11-12 | CVE-2023-27632 | Cross-Site Request Forgery (CSRF) vulnerability in mmrs151 Daily Prayer Time plugin <= 2023.03.08 versions. | Daily_prayer_time | 8.8 | ||
2023-06-22 | CVE-2023-27631 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in mmrs151 Daily Prayer Time plugin <= 2023.05.04 versions. | Daily_prayer_time | 5.4 | ||
2022-04-18 | CVE-2022-0785 | The Daily Prayer Time WordPress plugin before 2022.03.01 does not sanitise and escape the month parameter before using it in a SQL statement via the get_monthly_timetable AJAX action (available to unauthenticated users), leading to an unauthenticated SQL injection | Daily_prayer_time | 9.8 | ||
2021-09-13 | CVE-2021-24523 | The Daily Prayer Time WordPress plugin before 2021.08.10 does not sanitise or escape some of its settings before outputting them in the page, leading to Authenticated Stored Cross-Site Scripting issues. | Daily_prayer_time | 5.4 |