Known Vulnerabilities for Ajax Search by Ajax Search Project
Listed below are 3 of the newest known vulnerabilities associated with "Ajax Search" by "Ajax Search Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-50182 json | WWBN AVideo is an open source video platform. Versions prior to 29.0 contain an unauthenticated Reflected XSS vulnerability t... | Not Provided | 2026-07-15 | 2026-07-17 |
| CVE-2026-12753 json | The Advance Product Search- Voice & Ajax Search for WooCommerce plugin for WordPress is vulnerable to generic SQL Injection v... | Not Provided | 2026-07-16 | 2026-07-18 |
| CVE-2026-12103 json | The Wallet for WooCommerce plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1... | Not Provided | 2026-07-11 | 2026-07-13 |
| CVE-2026-11783 json | The Dokan: AI Powered WooCommerce Multivendor Marketplace Solution – Build Your Own Amazon, eBay, Etsy plugin for WordPress... | Not Provided | 2026-06-27 | 2026-06-29 |
| CVE-2026-3552 json | The SurfLink - Ultimate Link Manager plugin for WordPress is vulnerable to unauthorized data modification due to a missing ca... | Not Provided | 2026-07-11 | 2026-07-13 |
| CVE-2026-0545 json | In mlflow/mlflow, the FastAPI job endpoints under `/ajax-api/3.0/jobs/*` are not protected by authentication or authorization... | Not Provided | 2026-04-03 | 2026-07-15 |
| CVE-2025-48086 json | Deserialization of Untrusted Data vulnerability in wpdreams Ajax Search Lite ajax-search-lite allows Object Injection.This is... | Not Provided | 2025-11-06 | 2026-04-27 |
| CVE-2024-21752 json | Cross-Site Request Forgery (CSRF) vulnerability in Ernest Marcinko Ajax Search Lite allows Reflected XSS.This issue affects A... | Not Provided | 2024-02-29 | 2026-04-28 |
| CVE-2023-1435 json | The Ajax Search Pro WordPress plugin before 4.26.2 does not sanitise and escape various parameters before outputting them bac... | 6.1 - MEDIUM | 2023-04-24 | 2023-11-07 |
| CVE-2023-1420 json | The Ajax Search Lite WordPress plugin before 4.11.1, Ajax Search Pro WordPress plugin before 4.26.2 does not sanitise and esc... | 6.1 - MEDIUM | 2023-04-24 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Ajax Search Project | Ajax Search | 1.6 | |||
| Application | Ajax Search Project | Ajax Search | 1.5 | |||
| Application | Ajax Search Project | Ajax Search | 1.4 | |||
| Application | Ajax Search Project | Ajax Search | 1.3 | |||
| Application | Ajax Search Project | Ajax Search | 1.2 | |||
| Application | Ajax Search Project | Ajax Search | 1.1 | |||
| Application | Ajax Search Project | Ajax Search | 1.0 |