VYPR

Post Grid

by WordPress

Source repositories

CVEs (22)

  • CVE-2020-35938Jan 1, 2021
    risk 0.00cvss epss 0.02

    PHP Object injection vulnerabilities in the Post Grid plugin before 2.0.73 for WordPress allow remote authenticated attackers to inject arbitrary PHP objects due to insecure unserialization of data supplied in a remotely hosted crafted payload in the source parameter via AJAX.…

  • CVE-2020-35936Jan 1, 2021
    risk 0.00cvss epss 0.02

    Stored Cross-Site Scripting (XSS) vulnerabilities in the Post Grid plugin before 2.0.73 for WordPress allow remote authenticated attackers to import layouts including JavaScript supplied via a remotely hosted crafted payload in the source parameter via AJAX. The action must be…

Page 2 of 2