Medium 4.3
2023-07-01< 2.0.3
CVE-2020-36738
Minimum safe version
2.4
Update to 2.4 or later to address 10 fixable vulnerabilities
CVE-2020-36738
CVE-2021-4342
CVE-2022-4950
Various Affected Software (Various Versions) - Cross-Site Request Forgery Bypass
Cool Plugins (Various Versions) - Arbitrary Plugin Installation and Activation
Multiple Plugins from Cool Plugins - Subscriber+ Arbitrary Plugin Installation & Activation
Multiple Plugins/Themes - Cross-Site Request Forgery (CSRF)
WordPress Cool Timeline plugin <= 2.0.2 - Cross-Site Request Forgery (CSRF) vulnerability
WordPress Cool Timeline plugin <= 2.3.3 - Arbitrary Plugin Activation vulnerability
WordPress Cool Timeline plugin <= 2.3.3 - Arbitrary Plugin Installation vulnerability