Vulnerabilities > Whiletrue

DATE CVE VULNERABILITY TITLE RISK
2024-10-20 CVE-2024-49628 Cross-Site Request Forgery (CSRF) vulnerability in Whiletrue Most and Least Read Posts Widget 2.5.16
Cross-Site Request Forgery (CSRF) vulnerability in WhileTrue Most And Least Read Posts Widget allows Cross Site Request Forgery.This issue affects Most And Least Read Posts Widget: from n/a through 2.5.18.
network
low complexity
whiletrue CWE-352
8.8
2023-12-31 CVE-2023-52133 SQL Injection vulnerability in Whiletrue Most and Least Read Posts Widget 2.5.16
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WhileTrue Most And Least Read Posts Widget.This issue affects Most And Least Read Posts Widget: from n/a through 2.5.16.
network
low complexity
whiletrue CWE-89
8.8