Vulnerabilities (CVE)

Filtered by vendor Never5 Subscribe
Filtered by product Post Connector
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-28931 1 Never5 1 Post Connector 2024-11-21 N/A 5.9 MEDIUM
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Never5 Post Connector plugin <= 1.0.9 versions.
CVE-2015-9362 1 Never5 1 Post Connector 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The Post Connector plugin before 1.0.4 for WordPress has XSS via add_query_arg() and remove_query_arg().