Lucene search

K

Private Messages Security Vulnerabilities

cve
cve

CVE-2022-29441

Cross-Site Request Forgery (CSRF) vulnerability in Private Messages For WordPress plugin <= 2.1.10 at WordPress allows attackers to send messages.

4.3CVSS

4.6AI Score

0.001EPSS

2022-06-15 04:15 PM
43
4
cve
cve

CVE-2022-29442

Authenticated (subscriber or higher user role) Stored Cross-Site Scripting (XSS) vulnerability in Messages For WordPress <= 2.1.10 at WordPress.

5.4CVSS

5.2AI Score

0.001EPSS

2022-06-15 04:15 PM
63
6