Vulnerabilities > Wpreactions

DATE CVE VULNERABILITY TITLE RISK
2023-11-09 CVE-2023-32587 Cross-Site Request Forgery (CSRF) vulnerability in Wpreactions WP Reactions Lite
Cross-Site Request Forgery (CSRF) vulnerability in WP Reactions, LLC WP Reactions Lite plugin <= 1.3.8 versions.
network
low complexity
wpreactions CWE-352
8.8
2021-11-01 CVE-2021-24723 Cross-site Scripting vulnerability in Wpreactions WP Reactions Lite
The WP Reactions Lite WordPress plugin before 1.3.6 does not properly sanitize inputs within wp-admin pages, allowing users with sufficient access to inject XSS payloads within /wp-admin/ pages.
3.5