Vulnerabilities > Featherplugins
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-11-06 | CVE-2023-46777 | Unspecified vulnerability in Featherplugins Custom Login Page | Temporary Users | Rebrand Login | Login Captcha 1.1.3 Cross-Site Request Forgery (CSRF) vulnerability in Custom Login Page | Temporary Users | Rebrand Login | Login Captcha plugin <= 1.1.3 versions. | 8.8 |
2023-05-31 | CVE-2023-2545 | Missing Authorization vulnerability in Featherplugins Feather Login Page 1.0.7/1.1.1 The Feather Login Page plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'getListOfUsers' function in versions starting from 1.0.7 up to, and including, 1.1.1. | 8.8 |
2023-05-31 | CVE-2023-2547 | Missing Authorization vulnerability in Featherplugins Feather Login Page 1.0.7/1.1.1 The Feather Login Page plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'deleteUser' function in versions starting from 1.0.7 up to, and including, 1.1.1. | 5.4 |
2023-05-31 | CVE-2023-2549 | Cross-Site Request Forgery (CSRF) vulnerability in Featherplugins Feather Login Page 1.0.7/1.1.1 The Feather Login Page plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions starting from 1.0.7 up to, and including, 1.1.1. | 8.8 |