plugin

Uleak Security Dashboard Vulnerabilities

1 known security issue reported for the Uleak Security Dashboard WordPress plugin. Most recent disclosed Mar 31, 2022.

1 medium

Running Uleak Security Dashboard on your site? Check whether your installed version is affected.

Scan your site free

ULeak Security & Monitoring Plugin <= 1.2.3 - Stored Cross-Site Scripting

medium

The ULeak Security & Monitoring WordPress plugin through 1.2.3 does not have authorisation and CSRF checks when updating its settings, and is also lacking sanitisation as well as escaping in some of them, which could allow any authenticated users such as subscriber to perform Stored Cross-Site Scripting attacks against...

CVSS:
6.4
Affected:
up to 1.2.3
Fix:
No patched version reported
Disclosed:
Mar 31, 2022

CVE-2022-1557 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database