Medium 6.3 Closed
2024-10-16< 1.4.6
Freemius SDK <= 2.4.2 - Missing Authorization Checks
Freemius SDK <= 2.4.2 - Missing Authorization Checks
CVE-2024-37918
WordPress ConeBlog – WordPress Blog Widgets Plugin <= 1.4.6 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress ConeBlog – WordPress Blog Widgets plugin <= 1.4.5 - Sensitive Information Disclosure vulnerability
WordPress ConeBlog – WordPress Blog Widgets plugin <= 1.4.5 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability