Vulnerabilities > Never5 > Related Posts > 2.1.2

DATE CVE VULNERABILITY TITLE RISK
2024-03-13 CVE-2024-0592 Cross-Site Request Forgery (CSRF) vulnerability in Never5 Related Posts
The Related Posts for WordPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.2.1.
network
low complexity
never5 CWE-352
5.4
2022-10-14 CVE-2022-3506 Unspecified vulnerability in Never5 Related Posts
Cross-site Scripting (XSS) - Stored in GitHub repository barrykooij/related-posts-for-wp prior to 2.1.3.
network
low complexity
never5
5.4