Vulnerabilities > Wpdelicious

DATE CVE VULNERABILITY TITLE RISK
2024-09-11 CVE-2024-7626 Unspecified vulnerability in Wpdelicious WP Delicious
The WP Delicious – Recipe Plugin for Food Bloggers (formerly Delicious Recipes) plugin for WordPress is vulnerable to arbitrary file movement and reading due to insufficient file path validation in the save_edit_profile_details() function in all versions up to, and including, 1.6.9.
network
low complexity
wpdelicious
8.1
2024-08-29 CVE-2024-43935 Cross-site Scripting vulnerability in Wpdelicious WP Delicious
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Delicious Delicious Recipes – WordPress Recipe Plugin allows Stored XSS.This issue affects Delicious Recipes – WordPress Recipe Plugin: from n/a through 1.6.7.
network
low complexity
wpdelicious CWE-79
5.4