Vulnerabilities > Dineshkarki

DATE CVE VULNERABILITY TITLE RISK
2024-09-25 CVE-2024-47305 Cross-Site Request Forgery (CSRF) vulnerability in Dineshkarki USE ANY Font
Cross-Site Request Forgery (CSRF) vulnerability in Dnesscarkey Use Any Font allows Cross Site Request Forgery.This issue affects Use Any Font: from n/a through 6.3.08.
network
low complexity
dineshkarki CWE-352
8.8
2024-08-29 CVE-2024-43947 Cross-Site Request Forgery (CSRF) vulnerability in Dineshkarki WP Armour Extended
Cross-Site Request Forgery (CSRF) vulnerability in Dinesh Karki WP Armour Extended.This issue affects WP Armour Extended: from n/a through 1.26.
network
low complexity
dineshkarki CWE-352
4.3
2024-08-29 CVE-2024-43948 Cross-site Scripting vulnerability in Dineshkarki WP Armour
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Dinesh Karki WP Armour Extended.This issue affects WP Armour Extended: from n/a through 1.26.
network
low complexity
dineshkarki CWE-79
6.1
2023-10-10 CVE-2023-44261 Cross-Site Request Forgery (CSRF) vulnerability in Dineshkarki Block Plugin Update
Cross-Site Request Forgery (CSRF) vulnerability in Dinesh Karki Block Plugin Update plugin <= 3.3 versions.
network
low complexity
dineshkarki CWE-352
8.8
2022-04-15 CVE-2022-27851 Cross-Site Request Forgery (CSRF) vulnerability in Dineshkarki USE ANY Font
Cross-Site Request Forgery (CSRF) in Use Any Font (WordPress plugin) <= 6.1.7 allows an attacker to deactivate the API key.
network
low complexity
dineshkarki CWE-352
4.3