Vulnerabilities > Doofinder > Doofinder > 2.0.22

DATE CVE VULNERABILITY TITLE RISK
2024-01-05 CVE-2023-51678 Cross-Site Request Forgery (CSRF) vulnerability in Doofinder
Cross-Site Request Forgery (CSRF) vulnerability in Doofinder Doofinder WP & WooCommerce Search.This issue affects Doofinder WP & WooCommerce Search: from n/a through 2.0.33.
network
low complexity
doofinder CWE-352
6.5
2023-12-15 CVE-2023-49185 Cross-site Scripting vulnerability in Doofinder
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Doofinder Doofinder WP & WooCommerce Search allows Reflected XSS.This issue affects Doofinder WP & WooCommerce Search: from n/a through 2.1.7.
network
low complexity
doofinder CWE-79
6.1