← WordPress Vulnerabilities
WordPress security by component

Onionbuzz

Onionbuzz is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Jul 21, 2019; the highest CVE/CNA score is 9.8.

Plugin slug: onionbuzz

CVE-2019-14231: Onionbuzz: SQL injection

Onionbuzz is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.

PublishedJul 21, 2019
Safe version guidanceSee mitigation notes
Safe version
Jul 21, 2019 CVE-2019-14231
Onionbuzz: SQL injection
Onionbuzz is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE9.8
NVD9.8
Jul 21, 2019 CVE-2019-14230
Onionbuzz: SQL injection
Onionbuzz is affected by SQL injection. The vulnerable path is reachable without authentication. A successful request can alter database queries and expose or modify WordPress data.
See mitigation notes
CVE9.8
NVD9.8