Vulnerabilities > Mageewp

DATE CVE VULNERABILITY TITLE RISK
2020-04-03 CVE-2019-17231 Cross-site Scripting vulnerability in Mageewp Onetone 3.0.6
includes/theme-functions.php in the OneTone theme through 3.0.6 for WordPress has multiple stored XSS issues.
network
mageewp CWE-79
4.3
2020-04-03 CVE-2019-17230 Unspecified vulnerability in Mageewp Onetone 3.0.6
includes/theme-functions.php in the OneTone theme through 3.0.6 for WordPress allows unauthenticated options changes.
network
low complexity
mageewp
5.0