Vulnerabilities > Pippinsplugins > Featured Comments > 1.2.4

DATE CVE VULNERABILITY TITLE RISK
2019-08-22 CVE-2014-10382 Cross-Site Request Forgery (CSRF) vulnerability in Pippinsplugins Featured Comments
The feature-comments plugin before 1.2.5 for WordPress has CSRF for featuring or burying a comment.
4.3