Vulnerabilities > Gopostmatic > Replyable > 2.1.2

DATE CVE VULNERABILITY TITLE RISK
2023-03-06 CVE-2022-4265 Unspecified vulnerability in Gopostmatic Replyable
The Replyable WordPress plugin before 2.2.10 does not validate the class name submitted by the request when instantiating an object in the prompt_dismiss_notice action and also lacks CSRF check in the related action.
network
low complexity
gopostmatic
8.8