Vulnerabilities > Icegram > Icegram Engage > 3.1.12

DATE CVE VULNERABILITY TITLE RISK
2024-02-01 CVE-2023-51532 Unspecified vulnerability in Icegram Engage
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Icegram Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optins and Email List Building allows Stored XSS.This issue affects Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optins and Email List Building: from n/a through 3.1.19.
network
low complexity
icegram
5.4
2024-01-05 CVE-2023-52119 Cross-Site Request Forgery (CSRF) vulnerability in Icegram Engage
Cross-Site Request Forgery (CSRF) vulnerability in Icegram Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optins and Email List Building.This issue affects Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optins and Email List Building: from n/a through 3.1.18.
network
low complexity
icegram CWE-352
8.8