Vulnerabilities > Seraphinitesolutions

DATE CVE VULNERABILITY TITLE RISK
2023-12-14 CVE-2023-49740 Unspecified vulnerability in Seraphinitesolutions Seraphinite Accelerator
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Seraphinite Solutions Seraphinite Accelerator allows Reflected XSS.This issue affects Seraphinite Accelerator: from n/a through 2.20.28.
network
low complexity
seraphinitesolutions
6.1
2023-11-27 CVE-2023-5611 Missing Authorization vulnerability in Seraphinitesolutions Seraphinite Accelerator
The Seraphinite Accelerator WordPress plugin before 2.20.32 does not have authorisation and CSRF checks when resetting and importing its settings, allowing unauthenticated users to reset them
network
low complexity
seraphinitesolutions CWE-862
5.3