Vulnerabilities (CVE)

Filtered by vendor Wow-estore Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-29448 1 Wow-estore 1 Herd Effects 2022-05-26 4.0 MEDIUM 4.9 MEDIUM
Authenticated (admin or higher user role) Local File Inclusion (LFI) vulnerability in Wow-Company's Herd Effects plugin <= 5.2 at WordPress.
CVE-2022-0313 1 Wow-estore 1 Float Menu 2022-02-28 4.3 MEDIUM 4.3 MEDIUM
The Float menu WordPress plugin before 4.3.1 does not have CSRF check in place when deleting menu, which could allow attackers to make a logged in admin delete them via a CSRF attack