Vulnerabilities > Wpmoose

DATE CVE VULNERABILITY TITLE RISK
2024-06-08 CVE-2024-35731 Unspecified vulnerability in Wpmoose Kenta Blocks
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Moose Kenta Gutenberg Blocks Responsive Blocks and block templates library for Gutenberg Editor allows Stored XSS.This issue affects Kenta Gutenberg Blocks Responsive Blocks and block templates library for Gutenberg Editor: from n/a through 1.3.9.
network
low complexity
wpmoose
5.4
2024-02-28 CVE-2024-1388 Missing Authorization vulnerability in Wpmoose Yuki
The Yuki theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the reset_customizer_options() function in all versions up to, and including, 1.3.13.
network
low complexity
wpmoose CWE-862
4.3
2024-02-28 CVE-2024-1943 Cross-Site Request Forgery (CSRF) vulnerability in Wpmoose Yuki
The Yuki theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including 1.3.14.
network
low complexity
wpmoose CWE-352
4.3