Vulnerabilities > Draftpress > Header Footer Code Manager > 1.1.14

DATE CVE VULNERABILITY TITLE RISK
2023-10-03 CVE-2023-39989 Cross-Site Request Forgery (CSRF) vulnerability in Draftpress Header Footer Code Manager
Cross-Site Request Forgery (CSRF) vulnerability in 99robots Header Footer Code Manager plugin <= 1.1.34 versions.
network
low complexity
draftpress CWE-352
8.8
2022-02-24 CVE-2022-0710 Cross-site Scripting vulnerability in Draftpress Header Footer Code Manager
The Header Footer Code Manager plugin <= 1.1.16 for WordPress is vulnerable to Reflected Cross-Site Scripting (XSS) via the $_REQUEST['page'] parameter.
network
draftpress CWE-79
4.3