cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2020-10568,https://securityvulnerability.io/vulnerability/CVE-2020-10568,,The sitepress-multilingual-cms (WPML) plugin before 4.3.7-b.2 for WordPress has CSRF due to a loose comparison. This leads to remote code execution in includes/class-wp-installer.php via a series of requests that leverage unintended comparisons of integers to strings.,Wordpress,Sitepress-multilingual-cms,8.8,HIGH,0.018360000103712082,false,,false,false,false,,false,false,2020-03-14T13:50:04.000Z,0 CVE-2015-9416,https://securityvulnerability.io/vulnerability/CVE-2015-9416,,The sitepress-multilingual-cms (WPML) plugin 2.9.3 to 3.2.6 for WordPress has XSS via the Accept-Language HTTP header.,Wordpress,Sitepress-multilingual-cms,6.1,MEDIUM,0.0014400000218302011,false,,false,false,false,,false,false,2019-09-26T00:15:00.000Z,0