Vulnerabilities (CVE)

Filtered by vendor Linkwhisper Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-47852 1 Linkwhisper 1 Link Whisper Free 2026-04-28 N/A 8.5 HIGH
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Link Whisper Link Whisper Free.This issue affects Link Whisper Free: from n/a through 0.6.5.
CVE-2026-1900 1 Linkwhisper 1 Link Whisper 2026-04-13 N/A 6.5 MEDIUM
The Link Whisper Free WordPress plugin before 0.9.1 has a publicly accessible REST endpoint that allows unauthenticated settings updates.