Datainterlock develops Note Press, a content-management or publishing platform where the observed vulnerability pattern centers on SQL injection in data-handling and query construction. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Datainterlock over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-18548CRITICAL The note-press plugin before 0.1.2 for WordPress has SQL injection. | Aug 16, 2019 | 9.8 | 30 | NO | NO |
The Note Press WordPress plugin through 0.1.10 does not sanitise and escape the ids from the bulk actions before using them in a SQL statement in an admin page, leading to an SQL i | Jun 8, 2022 | 2.7 | 16 | NO | NO |
The Note Press WordPress plugin through 0.1.10 does not sanitise and escape the Update parameter before using it in a SQL statement when updating a note via the admin dashboard, le | Jun 8, 2022 | 2.7 | 13 | NO | NO |
The Note Press WordPress plugin through 0.1.10 does not sanitise and escape the id parameter before using it in various SQL statement via the admin dashboard, leading to SQL Inject | Jun 8, 2022 | 2.7 | 13 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Datainterlock.
Media articles that mention a CVE ID that affects a product developed by Datainterlock — matched by CVE ID, not by vendor name.