← WordPress Vulnerabilities
WordPress security by component

One Click Demo Import

One Click Demo Import is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published May 14, 2024; the highest CVE/CNA score is 7.2.

Plugin slug: one-click-demo-import

CVE-2024-34433: One Click Demo Import: Code execution

One Click Demo Import is affected by code execution. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can run attacker-controlled code in the WordPress hosting account.

PublishedMay 14, 2024
Safe version guidanceSee mitigation notes
Safe version
May 14, 2024 CVE-2024-34433
One Click Demo Import: Code execution
One Click Demo Import is affected by code execution. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can run attacker-controlled code in the WordPress hosting account.
See mitigation notes
CVE4.4
NVD7.2
Apr 11, 2022 CVE-2022-1008
One Click Demo Import: A security weakness
One Click Demo Import is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE7.2
NVD7.2