Vulnerabilities > Logicore
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-03-29 | CVE-2024-2963 | Unspecified vulnerability in Logicore Pocket News Generator The Pocket News Generator plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings such as "Consumer Key" and "Access Token" in all versions up to, and including, 0.2.0 due to insufficient input sanitization and output escaping. | 4.8 |
2024-03-29 | CVE-2024-2964 | Unspecified vulnerability in Logicore Pocket News Generator The Pocket News Generator plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.2.0. | 4.3 |