Vulnerabilities > Iqonic > Kivicare > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-06-08 | CVE-2024-35659 | Unspecified vulnerability in Iqonic Kivicare Authorization Bypass Through User-Controlled Key vulnerability in KiviCare.This issue affects KiviCare: from n/a through 3.6.2. | 8.8 |
2023-06-27 | CVE-2023-2628 | Unspecified vulnerability in Iqonic Kivicare The KiviCare WordPress plugin before 3.2.1 does not have CSRF checks (either flawed or missing completely) in various AJAX actions, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks. | 8.8 |