Vulnerabilities (CVE)

Filtered by vendor No Future Posts Project Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-1387 1 No Future Posts Project 1 No Future Posts 2024-11-21 3.5 LOW 4.8 MEDIUM
The No Future Posts WordPress plugin through 1.4 does not escape its settings, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks when unfiltered_html is disallowed