cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2022-29411,https://securityvulnerability.io/vulnerability/CVE-2022-29411,WordPress Hermit 音乐播放器 plugin <= 3.1.6 - Unauthenticated SQL Injection SQLi) vulnerability,SQL Injection (SQLi) vulnerability in Mufeng's Hermit 音乐播放器 plugin <= 3.1.6 on WordPress allows attackers to execute SQLi attack via (&id).,Wordpress,Hermit 音乐播放器 (WordPress Plugin),8.3,HIGH,0.0017399999778717756,false,,false,false,false,,false,false,2022-04-28T00:00:00.000Z,0 CVE-2022-29412,https://securityvulnerability.io/vulnerability/CVE-2022-29412,WordPress Hermit 音乐播放器 plugin <= 3.1.6 - Multiple Cross-Site Request Forgery (CSRF) vulnerabilities,"Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Hermit 音乐播放器 plugin <= 3.1.6 on WordPress allow attackers to delete cache, delete a source, create source.",Wordpress,Hermit 音乐播放器 (WordPress Plugin),5.4,MEDIUM,0.0006900000153109431,false,,false,false,false,,false,false,2022-04-28T00:00:00.000Z,0 CVE-2022-29410,https://securityvulnerability.io/vulnerability/CVE-2022-29410,WordPress Hermit 音乐播放器 plugin <= 3.1.6 - Authenticated SQL Injection (SQLi) vulnerability,Authenticated SQL Injection (SQLi) vulnerability in Mufeng's Hermit 音乐播放器 plugin <= 3.1.6 on WordPress allows attackers with Subscriber or higher user roles to execute SQLi attack via (&ids).,Wordpress,Hermit 音乐播放器 (WordPress Plugin),7.4,HIGH,0.0009500000160187483,false,,false,false,false,,false,false,2022-04-28T00:00:00.000Z,0 CVE-2022-29413,https://securityvulnerability.io/vulnerability/CVE-2022-29413,WordPress Hermit 音乐播放器 plugin <= 3.1.6 - Cross-Site Request Forgery (CSRF) leading to Stored Cross-Site Scripting (XSS) vulnerability,Cross-Site Request Forgery (CSRF) leading to Stored Cross-Site Scripting (XSS) in Mufeng's Hermit 音乐播放器 plugin <= 3.1.6 on WordPress via &title parameter.,Wordpress,Hermit 音乐播放器 (WordPress Plugin),4.7,MEDIUM,0.0005300000193528831,false,,false,false,false,,false,false,2022-04-28T00:00:00.000Z,0