Cross-Site Request Forgery (CSRF) vulnerability in frucomerci List of Posts from each Category plugin for WordPress allows Stored XSS. This issue affects List of Posts from each Category plugin for WordPress: from n/a through 2.0.
Metrics
Affected Vendors & Products
References
History
Tue, 11 Mar 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Cross-Site Request Forgery (CSRF) vulnerability in frucomerci List of Posts from each Category plugin for WordPress allows Stored XSS. This issue affects List of Posts from each Category plugin for WordPress: from n/a through 2.0. | |
Title | WordPress List of Posts from each Category plugin for WordPress plugin <= 2.0 - CSRF to Stored XSS vulnerability | |
Weaknesses | CWE-352 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published: 2025-03-11T21:00:48.897Z
Updated: 2025-03-11T21:00:48.897Z
Reserved: 2025-03-11T08:09:09.177Z
Link: CVE-2025-28894

No data.

Status : Received
Published: 2025-03-11T21:15:46.723
Modified: 2025-03-11T21:15:46.723
Link: CVE-2025-28894

No data.