Vulnerabilities > Foliovision > FV Flowplayer Video Player > High

DATE CVE VULNERABILITY TITLE RISK
2023-02-14 CVE-2023-25066 Cross-Site Request Forgery (CSRF) vulnerability in Foliovision FV Flowplayer Video Player
Cross-Site Request Forgery (CSRF) vulnerability in FolioVision FV Flowplayer Video Player plugin <= 7.5.30.7212 versions.
network
low complexity
foliovision CWE-352
8.8
2022-03-18 CVE-2022-25607 SQL Injection vulnerability in Foliovision FV Flowplayer Video Player
Authenticated (author or higher user role) SQL Injection (SQLi) vulnerability discovered in FV Flowplayer Video Player WordPress plugin (versions <= 7.5.15.727).
network
low complexity
foliovision CWE-89
7.2