Vulnerabilities > Gopostmatic

DATE CVE VULNERABILITY TITLE RISK
2023-03-06 CVE-2022-4265 Unspecified vulnerability in Gopostmatic Replyable
The Replyable WordPress plugin before 2.2.10 does not validate the class name submitted by the request when instantiating an object in the prompt_dismiss_notice action and also lacks CSRF check in the related action.
network
low complexity
gopostmatic
8.8
2019-09-26 CVE-2015-9411 Cross-site Scripting vulnerability in Gopostmatic Replyable 1.4.5
The Postmatic plugin before 1.4.6 for WordPress has XSS.
4.3