VYPR

WP Radio

by WordPress

CVEs (3)

  • CVE-2024-1042MedApr 10, 2024
    risk 0.42cvss 6.4epss 0.00

    The WP Radio – Worldwide Online Radio Stations Directory for WordPress plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on multiple AJAX functions in all versions up to, and including, 3.1.9. This makes it possible for…

  • CVE-2024-1041MedApr 10, 2024
    risk 0.42cvss 6.4epss 0.00

    The WP Radio – Worldwide Online Radio Stations Directory for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's settings in all versions up to, and including, 3.1.9 due to insufficient input sanitization and output escaping as well as…

  • CVE-2023-46150MedOct 25, 2023
    risk 0.35cvss 5.4epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in WP Military WP Radio plugin <= 3.1.9 versions.