Vulnerabilities > Wpmaspik

DATE CVE VULNERABILITY TITLE RISK
2023-11-30 CVE-2023-48272 Cross-site Scripting vulnerability in Wpmaspik Maspik 0.7.8
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in yonifre Maspik – Spam Blacklist allows Stored XSS.This issue affects Maspik – Spam Blacklist: from n/a through 0.9.2.
network
low complexity
wpmaspik CWE-79
6.1
2023-05-26 CVE-2023-24008 Cross-Site Request Forgery (CSRF) vulnerability in Wpmaspik Maspik
Cross-Site Request Forgery (CSRF) vulnerability in yonifre Maspik – Spam Blacklist plugin <= 0.7.8 versions.
network
low complexity
wpmaspik CWE-352
8.8