Known Vulnerabilities for Discy by 2code
Listed below are 3 of the newest known vulnerabilities associated with "Discy" by "2code".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-1422 json | The Discy WordPress theme before 5.2 does not check for CSRF tokens in the AJAX action discy_reset_options, allowing an attac... | 6.5 - MEDIUM | 2022-06-08 | 2022-06-14 |
| CVE-2022-1421 json | The Discy WordPress theme before 5.2 lacks CSRF checks in some AJAX actions, allowing an attacker to make a logged in admin c... | 4.3 - MEDIUM | 2022-06-08 | 2022-06-14 |
| CVE-2022-1323 json | The Discy WordPress theme before 5.0 lacks authorization checks then processing ajax requests to the discy_update_options act... | 6.5 - MEDIUM | 2022-08-08 | 2023-11-07 |