VendorsGo Web Solutionswp_customer_reviewsany version
Vulnerabilities

Go Web Solutions WP Customer Reviews any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

7CVEs
CVE-2016-10902
The wp-customer-reviews plugin before 3.0.9 for WordPress has CSRF in the admin tools.
Published 2019-08-21 · Modified
8.8EPSS 0.007
CVE-2021-24135
WP Customer Reviews < 3.4.3 - Multiple Unauthenticated and Low Priv Authenticated Stored XSS
Published 2021-03-18 · Modified
6.1EPSS 0.011
CVE-2016-10901
The wp-customer-reviews plugin before 3.0.9 for WordPress has XSS in the admin tools.
Published 2019-08-21 · Modified
6.1EPSS 0.009
CVE-2024-1849
WP Customer Reviews < 3.7.1 - Malicious Redirect via HTTP-EQUIV Injection
Published 2024-04-15 · Analyzed
5.4EPSS 0.005
CVE-2021-24296
WP Customer Reviews < 3.5.6 - Authenticated Stored Cross-Site Scripting (XSS)
Published 2021-05-24 · Modified
4.8EPSS 0.006
CVE-2023-4648
WP Customer Reviews <= 3.6.6 - Authenticated (Administrator+) Stored Cross-Site Scripting
Published 2023-10-20 · Modified
4.8EPSS 0.004
CVE-2023-4686
WP Customer Reviews <= 3.6.6 - Authenticated (Subscriber+) Sensitive Information Exposure
Published 2023-11-22 · Modified
4.3EPSS 0.005