Filtered by vendor Private Messages Project Subscriptions
Filtered by product Private Messages Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-29442 1 Private Messages Project 1 Private Messages 2024-11-21 5.4 Medium
Authenticated (subscriber or higher user role) Stored Cross-Site Scripting (XSS) vulnerability in Messages For WordPress <= 2.1.10 at WordPress.
CVE-2022-29441 1 Private Messages Project 1 Private Messages 2024-11-21 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Private Messages For WordPress plugin <= 2.1.10 at WordPress allows attackers to send messages.