Vulnerabilities > Tipsandtricks HQ > Category Specific RSS Feed Subscription > 1.7

DATE CVE VULNERABILITY TITLE RISK
2023-05-12 CVE-2023-22685 Cross-site Scripting vulnerability in Tipsandtricks-Hq Category Specific RSS Feed Subscription
Auth.
network
low complexity
tipsandtricks-hq CWE-79
4.8
2023-05-03 CVE-2023-22691 Cross-Site Request Forgery (CSRF) vulnerability in Tipsandtricks-Hq Category Specific RSS Feed Subscription
Cross-Site Request Forgery (CSRF) vulnerability in Tips and Tricks HQ, Ruhul Amin Category Specific RSS feed Subscription plugin <= v2.1 versions.
network
low complexity
tipsandtricks-hq CWE-352
8.8
2019-09-12 CVE-2019-5993 Cross-Site Request Forgery (CSRF) vulnerability in Tipsandtricks-Hq Category Specific RSS Feed Subscription
Cross-site request forgery (CSRF) vulnerability in Category Specific RSS feed Subscription version v2.0 and earlier allows remote attackers to hijack the authentication of administrators via unspecified vectors.
6.8