Skip to main content

Vendor/product archive

awplife / weather_effect CVEs

Beta · best-effort

2 CVEs tagged to awplife / weather_effect0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2021-24709

Published Oct 11, 2021

The Weather Effect WordPress plugin before 1.3.6 does not properly validate and escape some of its settings (like *_size_leaf, *_flakes_leaf, *_speed) which could lead to Stored C…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-24683

Published Oct 11, 2021

The Weather Effect WordPress plugin before 1.3.4 does not have any CSRF checks in place when saving its settings, and do not validate or escape them, which could lead to Stored Cr…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1