← WordPress Vulnerabilities
WordPress security by component

Import any XML or CSV File to WordPress PRO

Import any XML or CSV File to WordPress PRO is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jan 19, 2025; the highest CVE/CNA score is 5.5.

Plugin slug: import-any-xml-or-csv-file-to-wordpress-pro

CVE-2024-8722: Import any XML or CSV File to WordPress PRO: Cross-site scripting

Import any XML or CSV File to WordPress PRO is affected by cross-site scripting. Exploitation requires at least administrator-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.

PublishedJan 19, 2025
Safe version guidanceSee mitigation notes
Safe version
Jan 19, 2025 CVE-2024-8722
Import any XML or CSV File to WordPress PRO: Cross-site scripting
Import any XML or CSV File to WordPress PRO is affected by cross-site scripting. Exploitation requires at least administrator-level access. Injected script can execute in the affected site's origin when the vulnerable output is viewed.
See mitigation notes
CVE5.5
NVDPending