Vulnerabilities > Yoginetwork

DATE CVE VULNERABILITY TITLE RISK
2024-10-02 CVE-2024-8800 Cross-site Scripting vulnerability in Yoginetwork Rabbitloader
The RabbitLoader – Website Speed Optimization for improving Core Web Vital metrics with Cache, Image Optimization, and more plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 2.21.0.
network
low complexity
yoginetwork CWE-79
6.1
2024-06-10 CVE-2024-21751 Missing Authorization vulnerability in Yoginetwork Rabbitloader
Missing Authorization vulnerability in RabbitLoader.This issue affects RabbitLoader: from n/a through 2.19.13.
network
low complexity
yoginetwork CWE-862
8.8