VYPR

Whizz

by WordPress

CVEs (2)

  • CVE-2017-8099HigApr 24, 2017
    risk 0.53cvss 8.1epss 0.00

    There is CSRF in the WHIZZ plugin before 1.1.1 for WordPress, allowing attackers to delete any WordPress users and change the plugin's status via a GET request.

  • CVE-2016-1000154MedOct 10, 2016
    risk 0.40cvss 6.1epss 0.06

    Reflected XSS in wordpress plugin whizz v1.0.7