Vulnerabilities > Radiustheme

DATE CVE VULNERABILITY TITLE RISK
2024-01-31 CVE-2024-0836 Missing Authorization vulnerability in Radiustheme Review Schema
The WordPress Review & Structure Data Schema Plugin – Review Schema plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the rtrs_review_edit() function in all versions up to, and including, 2.1.14.
network
low complexity
radiustheme CWE-862
4.3
2023-10-03 CVE-2023-39923 Cross-Site Request Forgery (CSRF) vulnerability in Radiustheme the Post Grid
Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme The Post Grid plugin <= 7.2.7 versions.
network
low complexity
radiustheme CWE-352
8.8
2023-07-27 CVE-2023-37894 Cross-site Scripting vulnerability in Radiustheme Variation Images Gallery for Woocommerce
Unauth.
network
low complexity
radiustheme CWE-79
6.1
2023-07-18 CVE-2023-37387 Cross-Site Request Forgery (CSRF) vulnerability in Radiustheme Classified Listing PRO - Classified ADS & Business Directory
Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme Classified Listing plugin <= 2.4.5 versions.
network
low complexity
radiustheme CWE-352
8.8
2023-05-23 CVE-2022-46853 Cross-Site Request Forgery (CSRF) vulnerability in Radiustheme Post Grid
Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme The Post Grid plugin <= 5.0.4 versions.
network
low complexity
radiustheme CWE-352
8.8
2023-04-04 CVE-2023-23685 Cross-site Scripting vulnerability in Radiustheme Portfolio
Auth.
network
low complexity
radiustheme CWE-79
5.4
2021-11-01 CVE-2021-24742 Incorrect Authorization vulnerability in Radiustheme Logo Slider and Showcase
The Logo Slider and Showcase WordPress plugin before 1.3.37 allows Editor users to update the plugin's settings via the rtWLSSettings AJAX action because it uses a nonce for authorisation instead of a capability check.
network
low complexity
radiustheme CWE-863
4.0