Known Vulnerabilities for SQL Chart Builder by Elvinhaci
Listed below are 9 of the newest known vulnerabilities associated with "SQL Chart Builder" by "Elvinhaci".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-4079 json | The SQL Chart Builder WordPress plugin before 2.3.8 does not properly escape user input as it is concatened to SQL queries, m... | Not Provided | 2026-04-07 | 2026-04-07 |
| CVE-2025-66529 json | Cross-Site Request Forgery (CSRF) vulnerability in Ays Pro Chartify chart-builder allows Cross Site Request Forgery.This issu... | Not Provided | 2025-12-09 | 2026-04-27 |
| CVE-2025-58233 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Guaven Labs SQL Chart B... | Not Provided | 2025-09-22 | 2026-04-23 |
| CVE-2025-54673 json | Cross-Site Request Forgery (CSRF) vulnerability in Ays Pro Chartify chart-builder allows Cross Site Request Forgery.This issu... | Not Provided | 2025-08-14 | 2026-04-23 |
| CVE-2025-30904 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ays Pro Chartify chart-... | Not Provided | 2025-03-27 | 2026-04-23 |
| CVE-2025-25077 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in dugbug Easy Chart Build... | Not Provided | 2025-02-07 | 2026-04-23 |
| CVE-2024-47347 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ays Pro Chartify chart-... | Not Provided | 2024-10-06 | 2026-04-23 |
| CVE-2024-11430 json | The SQL Chart Builder plugin for WordPress is vulnerable to SQL Injection via the 'arg1' arg of the 'gvn_schart_2' shortcode ... | Not Provided | 2024-12-12 | 2026-04-08 |
| CVE-2023-47526 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Chart Builder Team Char... | Not Provided | 2024-02-12 | 2026-04-28 |