Filtered by vendor Wpmanageninja Subscriptions
Filtered by product Fluent Support Subscriptions
Total 5 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-47304 1 Wpmanageninja 1 Fluent Support 2025-06-09 8.5 High
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPManageNinja LLC Fluent Support allows SQL Injection.This issue affects Fluent Support: from n/a through 1.8.0.
CVE-2024-13568 1 Wpmanageninja 1 Fluent Support 2025-05-26 7.5 High
The Fluent Support – Helpdesk & Customer Support Ticket System plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.8.5 via the 'fluent-support' directory. This makes it possible for unauthenticated attackers to extract sensitive data stored insecurely in the /wp-content/uploads/fluent-support directory which can contain file attachments included in support tickets.
CVE-2023-51547 1 Wpmanageninja 1 Fluent Support 2024-11-21 7.6 High
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPManageNinja LLC Fluent Support – WordPress Helpdesk and Customer Support Ticket Plugin.This issue affects Fluent Support – WordPress Helpdesk and Customer Support Ticket Plugin: from n/a through 1.7.6.
CVE-2022-2559 1 Wpmanageninja 1 Fluent Support 2024-11-21 7.2 High
The Fluent Support WordPress plugin before 1.5.8 does not properly sanitise, validate and escape various parameters before using them in an SQL statement, leading to an SQL Injection vulnerability exploitable by high privilege users
CVE-2024-47302 1 Wpmanageninja 1 Fluent Support 2024-11-19 5.3 Medium
Missing Authorization vulnerability in WPManageNinja LLC Fluent Support allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Fluent Support: from n/a through 1.8.0.