Vulnerabilities > KAU Boys

DATE CVE VULNERABILITY TITLE RISK
2024-10-01 CVE-2024-9224 Path Traversal vulnerability in Kau-Boys Hello World
The Hello World plugin for WordPress is vulnerable to Arbitrary File Reading in all versions up to, and including, 2.1.1 via the hello_world_lyric() function.
network
low complexity
kau-boys CWE-22
6.5
2023-10-10 CVE-2023-44471 Cross-Site Request Forgery (CSRF) vulnerability in Kau-Boys Backend Localization
Cross-Site Request Forgery (CSRF) vulnerability in Bernhard Kau Backend Localization plugin <= 2.1.10 versions.
network
low complexity
kau-boys CWE-352
8.8
2023-04-24 CVE-2012-10013 Cross-site Scripting vulnerability in Kau-Boys Backend Localization
A vulnerability was found in Kau-Boy Backend Localization Plugin up to 1.6.1 on WordPress.
network
low complexity
kau-boys CWE-79
6.1
2023-04-24 CVE-2012-10014 Cross-site Scripting vulnerability in Kau-Boys Backend Localization
A vulnerability classified as problematic has been found in Kau-Boy Backend Localization Plugin 2.0 on WordPress.
network
low complexity
kau-boys CWE-79
6.1