cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-6226,https://securityvulnerability.io/vulnerability/CVE-2024-6226,Reflected Cross-Site Scripting Vulnerability in WpStickyBar WordPress Plugin,"The WpStickyBar WordPress plugin through 2.1.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin",Wordpress,WPstickybar,,,0.0004299999854993075,false,,false,false,true,true,false,false,2024-07-30T06:00:10.319Z,0 CVE-2024-5765,https://securityvulnerability.io/vulnerability/CVE-2024-5765,Unauthenticated SQL Injection Vulnerability in WpStickyBar WordPress Plugin,"The WpStickyBar WordPress plugin through 2.1.0 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection",Wordpress,WPstickybar,,,0.0005300000193528831,false,,false,false,true,true,false,false,2024-07-30T06:00:08.234Z,0