Vulnerabilities > Wpchill > Strong Testimonials

DATE CVE VULNERABILITY TITLE RISK
2024-06-07 CVE-2023-6491 Missing Authorization vulnerability in Wpchill Strong Testimonials
The Strong Testimonials plugin for WordPress is vulnerable to unauthorized modification of data due to an improper capability check on the wpmtst_save_view_sticky function in all versions up to, and including, 3.1.12.
network
low complexity
wpchill CWE-862
4.3
2024-01-05 CVE-2023-52123 Cross-Site Request Forgery (CSRF) vulnerability in Wpchill Strong Testimonials
Cross-Site Request Forgery (CSRF) vulnerability in WPChill Strong Testimonials.This issue affects Strong Testimonials: from n/a through 3.1.10.
network
low complexity
wpchill CWE-352
8.8
2023-06-16 CVE-2023-26013 Cross-site Scripting vulnerability in Wpchill Strong Testimonials
Auth.
network
low complexity
wpchill CWE-79
5.4
2020-02-03 CVE-2020-8549 Cross-site Scripting vulnerability in Wpchill Strong Testimonials
Stored XSS in the Strong Testimonials plugin before 2.40.1 for WordPress can result in an attacker performing malicious actions such as stealing session tokens.
network
low complexity
wpchill CWE-79
6.1