featherplugins records
4 published records for vendor featherplugins.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 25%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
35Monitor | CVE-2023-2545No exploit | The Feather Login Page plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'getListOffeatherplugins · feather login page · CWE-862 | High8.8 | — | 0.7% | May 30, 2023 |
35Monitor | CVE-2023-2549No exploit | The Feather Login Page plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions starting from 1.0.7 up to, and includingfeatherplugins · feather login page · CWE-352 | High8.8 | — | 0.3% | May 30, 2023 |
35Monitor | CVE-2023-46777No exploit | WordPress Feather Login Page Plugin <= 1.1.3 is vulnerable to Cross Site Request Forgery (CSRF)featherplugins · custom login page \| temporary users \| rebrand login \| login captcha · CWE-352 | High8.8 | — | 0.2% | Nov 6, 2023 |
21Monitor | CVE-2023-2547No exploit | The Feather Login Page plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'deleteUser'featherplugins · feather login page · CWE-862 | Medium5.4 | — | 0.4% | May 30, 2023 |
- CVE-2023-254535Monitor
The Feather Login Page plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'getListOf
HighCVSS 8.8No exploitEPSS 1%featherplugins · feather login pageMay 30, 2023
- CVE-2023-254935Monitor
The Feather Login Page plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions starting from 1.0.7 up to, and including
HighCVSS 8.8No exploitEPSS 0%featherplugins · feather login pageMay 30, 2023
- CVE-2023-4677735Monitor
WordPress Feather Login Page Plugin <= 1.1.3 is vulnerable to Cross Site Request Forgery (CSRF)
HighCVSS 8.8No exploitEPSS 0%featherplugins · custom login page \| temporary users \| rebrand login \| login captchaNov 6, 2023
- CVE-2023-254721Monitor
The Feather Login Page plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'deleteUser'
MediumCVSS 5.4No exploitEPSS 0%featherplugins · feather login pageMay 30, 2023