N/A Unfixed Closed
≤ 1.0.1
wp-private-messages - /wp-admin/profile.php msgid Parameter SQL Injection
Minimum safe version
1.1
Update to 1.1 or later to address 2 fixable vulnerabilities
wp-private-messages - /wp-admin/profile.php msgid Parameter SQL Injection
WP Private Messages 1.0.1 – Authenticated SQL Injection
WP Private Messages <= 1.0.1 - Authenticated SQL Injection
WordPress WP Private Messages Plugin - SQL Injection
WordPress Private Messages Plugin <= 1.0.1 - SQL Injection