Medium 6.1
2023-04-24< 4.26.2
CVE-2023-1420
Minimum safe version
4.26.2
Update to 4.26.2 or later to address 9 fixable vulnerabilities
CVE-2023-1420
Ajax Search Pro < 4.19 - Stored XSS via CSRF
Ajax Search Pro < 4.19 - Subscriber+ SQL Injection
Ajax Search Pro <= 4.18.7 - Authenticated (Subscriber+) SQL Injection
Ajax Search Pro <= 4.18.7 - Cross-Site Request Forgery to Cross-Site Scripting
CVE-2023-1435
Ajax Search Pro <= 3.5 - Cross-Site Request Forgery
Ajax Search Pro <= 3.5 - Cross-Site Request Forgery (CSRF) Add User
WordPress Ajax Search Pro Plugin - Remote Code Execution