Easy Testimonial Manager Project develops a WordPress plugin for collecting and displaying user testimonials, with the observed vulnerability pattern centered on SQL injection flaws in input handling and query construction. Treat this as a narrowly scoped vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Easy Testimonial Manager Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-24394HIGH An id GET parameter of the Easy Testimonial Manager WordPress plugin through 1.2.0 is not sanitised, escaped or validated before inserting to a SQL statement, leading to SQL inject | Sep 6, 2021 | 7.2 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Easy Testimonial Manager Project.
Media articles that mention a CVE ID that affects a product developed by Easy Testimonial Manager Project — matched by CVE ID, not by vendor name.