Vulnerabilities > Pierros

DATE CVE VULNERABILITY TITLE RISK
2024-09-25 CVE-2024-8713 Cross-site Scripting vulnerability in Pierros Kodex Posts Likes 2.4.3
The Kodex Posts likes plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.5.0.
network
low complexity
pierros CWE-79
6.1
2023-05-25 CVE-2022-46814 Cross-Site Request Forgery (CSRF) vulnerability in Pierros Kodex Posts Likes 2.4.3
Cross-Site Request Forgery (CSRF) vulnerability in Pierre Lebedel Kodex Posts likes plugin <= 2.4.3 versions.
network
low complexity
pierros CWE-352
8.8