Known Vulnerabilities for Post Connector by Never5
Listed below are 2 of the newest known vulnerabilities associated with "Post Connector" by "Never5".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-9179 json | The WP Forms Connector plugin for WordPress is vulnerable to SQL Injection via the 'order' parameter of the /wp-json/wp/v3/po... | Not Provided | 2026-06-24 | 2026-06-25 |
| CVE-2023-54350 json | WordPress Augmented-Reality plugin contains a remote code execution vulnerability in the elFinder connector that allows unaut... | Not Provided | 2026-06-08 | 2026-06-09 |
| CVE-2023-28931 json | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Never5 Post Connector plugin <= 1.0.9 versions. | 4.8 - MEDIUM | 2023-08-08 | 2023-08-10 |
| CVE-2015-9362 json | The Post Connector plugin before 1.0.4 for WordPress has XSS via add_query_arg() and remove_query_arg(). | 6.1 - MEDIUM | 2019-08-28 | 2019-08-30 |