Filtered by vendor Tinysolutions Subscriptions
Filtered by product Media Library Tools Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-67520 2 Tinysolutions, Wordpress 2 Media Library Tools, Wordpress 2025-12-11 9.8 Critical
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tiny Solutions Media Library Tools media-library-tools allows SQL Injection.This issue affects Media Library Tools: from n/a through <= 1.6.15.
CVE-2024-10482 2 Tinysolutions, Wptinysolutions 2 Media Library Tools, Media Library Tools 2025-05-15 5.4 Medium
The Media File Rename, Find Unused File, Add Alt text, Caption, Desc For Image SEO WordPress plugin before 1.5.0 does not sanitise uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads.