Update the WordPress Survey Maker plugin to the latest available version (at least 1.5.6).
To Quang Duong discovered and reported this SQL Injection vulnerability in WordPress Survey Maker Plugin. This could allow a malicious actor to directly interact with your database, including but not limited to stealing information and creating new administrator accounts. This vulnerability has been fixed in version 1.5.6.
Broken Access Control vulnerability
27.01.2023
Authenticated SQL Injection Vulnerability
14.01.2023
Unauthenticated Stored CrossSite Scripting (XSS) vulnerability
03.01.2023
Authenticated (Admin+) Stored CrossSite Scripting vulnerability
23.12.2022
Unauthenticated Stored CrossSite Scripting (XSS) vulnerability
03.12.2021