Link Library

Vulnerabilities 32Slug link-libraryLatest version 7.9.2WordPress.org →

Minimum safe version

7.8.9

Update to 7.8.9 or later to address 32 fixable vulnerabilities

Latest available7.9.2
N/A
2026-04-22< 7.8.9

Link Library <= 7.8.8 - Authenticated (Contributor+) Arbitrary File Deletion

Medium 6.4
2025-04-04< 7.8

Link Library <= 7.7.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Link Additional Parameters

N/A
< 5.1.7

Link Library 5.1.6 - link-library-ajax.php Multiple Parameter SQL Injection

N/A
< 5.0.9

Link Library 5.0.8 - wp-content/plugins/link-library/tracker.php id Parameter XSS

N/A
< 5.0.9

Link Library 5.0.8 - wp-content/plugins/link-library/tracker.php id Parameter SQL Injection

N/A
< 5.7.9.7

Link Library &lt;= 5.2.1 - SQL Injection

N/A
< 5.9.12.30

Link Library &lt;= 5.9.12.29 - Authenticated Reflected Cross-Site Scripting (XSS)

N/A
< 5.9.13.27

Link-Library &lt;= 5.9.13.26 &ndash; Authenticated SQL Injection

Medium 4.8
2023-12-26< 7.4.1

WordPress Link Library Plugin < 7.4.1 is vulnerable to Cross Site Scripting (XSS)

N/A
2014-11-08< 5.8.11

Link Library <= 5.8.10.6 - Reflected Cross-Site Scripting

N/A
2016-08-15< 5.9.12.30

Link Library <= 5.9.12.29 - Reflected Cross-Site Scripting

N/A
2017-08-14< 5.9.13.27

Link Library <= 5.9.13.26 – SQL Injection

N/A
2011-09-24< 5.2.2

WordPress Link Library Plugin <= 5.2.1 - SQL Injection

N/A
2015-05-15< 5.0.9

WordPress Link Library Plugin <= 5.0.8 - SQL Injection

N/A
2015-05-15< 5.0.9

WordPress Link Library Plugin <= 5.0.8 - Cross Site Scripting

N/A
2015-05-15< 5.1.7

WordPress Link Library Plugin <= 5.1.6 - SQL Injection

N/A
2016-08-16< 5.9.12.30

WordPress Link Library Plugin <= 5.9.12.29 - Cross Site Scripting

N/A
2017-08-16< 5.9.13.27

WordPress Link-Library plugin <=5.9.13.26 – Authenticated SQL Injection vulnerability