Vulnerabilities > Postsnippets > Post Snippets > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-08-08 CVE-2023-25459 Cross-site Scripting vulnerability in Postsnippets Post Snippets
Auth.
network
low complexity
postsnippets CWE-79
4.8
2022-02-28 CVE-2021-25010 Cross-Site Request Forgery (CSRF) vulnerability in Postsnippets Post Snippets
The Post Snippets WordPress plugin before 3.1.4 does not have CSRF check when importing files, allowing attacker to make a logged In admin import arbitrary snippets.
6.8