Postieplugin / Postie
3 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2019-20204 | The Postie plugin 1.9.40 for WordPress allows XSS, as demonstrated by a certain payload with jaVasCript:/* at the beginning and a crafted SVG element. | MEDIUM | 5.4 | Jan 1, 2020 |
| CVE-2019-20203 | The Authorized Addresses feature in the Postie plugin 1.9.40 for WordPress allows remote attackers to publish posts by spoofing the From information of an emai… | MEDIUM | 5.3 | Jan 1, 2020 |
| CVE-2012-2580 | Cross-site scripting (XSS) vulnerability in the Postie plugin 1.4.3, and possibly before 1.5.15, for WordPress allows remote attackers to inject arbitrary web… | MEDIUM | 4.3 | Jun 20, 2014 |
Showing 1 to 3 of 3 CVEs