Whizz
Browserweb · 2 CVEs
CVE-2017-8099
HIGH
There is CSRF in the WHIZZ plugin before 1.1.1 for WordPress, allowing attackers to delete any WordPress users and chan…
Apr 24, 2017
CVE-2016-1000154
MEDIUM
Reflected XSS in wordpress plugin whizz v1.0.7
Oct 10, 2016
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2017-8099 | There is CSRF in the WHIZZ plugin before 1.1.1 for WordPress, allowing attackers to delete any WordPress users and change the plugin's status via a GET request. | HIGH | 0.64% | Apr 24, 2017 |
| CVE-2016-1000154 | Reflected XSS in wordpress plugin whizz v1.0.7 | MEDIUM | 3.43% | Oct 10, 2016 |
Showing 1 to 2 of 2 CVEs