Vulnerabilities > Kevonadonis

DATE CVE VULNERABILITY TITLE RISK
2025-02-12 CVE-2024-12386 Cross-Site Request Forgery (CSRF) vulnerability in Kevonadonis WP Abstracts
The WP Abstracts plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.7.3.
network
low complexity
kevonadonis CWE-352
5.4
2025-01-18 CVE-2024-12385 Cross-Site Request Forgery (CSRF) vulnerability in Kevonadonis WP Abstracts
The WP Abstracts plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.7.2.
network
low complexity
kevonadonis CWE-352
6.1
2024-10-29 CVE-2024-50411 Cross-site Scripting vulnerability in Kevonadonis WP Abstracts
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kevon Adonis WP Abstracts allows Stored XSS.This issue affects WP Abstracts: from n/a through 2.7.1.
network
low complexity
kevonadonis CWE-79
4.8
2024-10-06 CVE-2024-44045 Cross-site Scripting vulnerability in Kevonadonis WP Abstracts
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Kevon Adonis WP Abstracts allows Stored XSS.This issue affects WP Abstracts: from n/a through 2.6.5.
network
low complexity
kevonadonis CWE-79
4.8
2023-08-30 CVE-2023-28692 Cross-site Scripting vulnerability in Kevonadonis WP Abstracts
Auth.
network
low complexity
kevonadonis CWE-79
4.8