Vulnerabilities > Dsgvo FOR WP > Dsgvo ALL IN ONE FOR WP > 4.3

DATE CVE VULNERABILITY TITLE RISK
2025-02-04 CVE-2024-13356 Cross-Site Request Forgery (CSRF) vulnerability in Dsgvo-For-Wp Dsgvo ALL in ONE for WP
The DSGVO All in one for WP plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.6.
network
low complexity
dsgvo-for-wp CWE-352
6.5
2024-08-29 CVE-2024-43964 Cross-site Scripting vulnerability in Dsgvo-For-Wp Dsgvo ALL in ONE for WP
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Michael Leithold DSGVO All in one for WP allows Stored XSS.This issue affects DSGVO All in one for WP: from n/a through 4.5.
network
low complexity
dsgvo-for-wp CWE-79
5.4
2024-04-11 CVE-2024-27967 Cross-Site Request Forgery (CSRF) vulnerability in Dsgvo-For-Wp Dsgvo ALL in ONE for WP
Cross-Site Request Forgery (CSRF) vulnerability in Michael Leithold DSGVO All in one for WP.This issue affects DSGVO All in one for WP: from n/a through 4.3.
network
low complexity
dsgvo-for-wp CWE-352
8.8