Vulnerabilities > Coderevolution

DATE CVE VULNERABILITY TITLE RISK
2024-11-04 CVE-2024-51681 Cross-site Scripting vulnerability in Coderevolution WP Pocket Urls 1.0.0/1.0.2
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CodeRevolution WP Pocket URLs allows Stored XSS.This issue affects WP Pocket URLs: from n/a through 1.0.3.
network
low complexity
coderevolution CWE-79
5.4
2024-10-01 CVE-2024-9265 Unspecified vulnerability in Coderevolution Echo RSS Feed Post Generator
The Echo RSS Feed Post Generator plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 5.4.6.
network
low complexity
coderevolution
critical
9.8
2023-12-15 CVE-2023-49176 Cross-site Scripting vulnerability in Coderevolution WP Pocket Urls 1.0.0/1.0.2
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodeRevolution WP Pocket URLs allows Reflected XSS.This issue affects WP Pocket URLs: from n/a through 1.0.2.
network
low complexity
coderevolution CWE-79
6.1