Vulnerabilities > Boxystudio > Cooked > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-08-05 CVE-2024-41816 Cross-site Scripting vulnerability in Boxystudio Cooked 1.7.5.6/1.7.5.7
Cooked is a recipe plugin for WordPress.
network
low complexity
boxystudio CWE-79
5.4
2023-10-02 CVE-2023-44477 Unspecified vulnerability in Boxystudio Cooked 1.7.5.6/1.7.5.7
Auth.
network
low complexity
boxystudio
5.4
2021-04-22 CVE-2021-24233 Unspecified vulnerability in Boxystudio Cooked
The Cooked Pro WordPress plugin before 1.7.5.6 was affected by unauthenticated reflected Cross-Site Scripting issues, due to improper sanitisation of user input while being output back in pages as an arbitrary attribute.
network
low complexity
boxystudio
6.1