cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2020-36738,https://securityvulnerability.io/vulnerability/CVE-2020-36738,Cross-Site Request Forgery in Cool Timeline Plugin for WordPress,"The Cool Timeline plugin for WordPress is susceptible to a Cross-Site Request Forgery (CSRF) vulnerability due to inadequate nonce validation in the ctl_save() function. This flaw allows attackers to send unauthorized requests that can manipulate field icons on the plugin. If a site administrator is deceived into clicking a malicious link, an attacker can exploit this vulnerability and perform actions on behalf of the administrator without any authentication. Users are advised to update to the latest version to mitigate this risk.",Wordpress,Cool Timeline (horizontal & Vertical Timeline),4.3,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,2023-07-01T03:30:12.869Z,0 CVE-2022-4950,https://securityvulnerability.io/vulnerability/CVE-2022-4950,Arbitrary Plugin Installation Vulnerability in Cool Plugins for WordPress,"Several WordPress plugins developed by Cool Plugins are susceptible to unauthorized arbitrary plugin installation and activation. This vulnerability allows authenticated attackers, even those with minimal permissions like subscribers, to execute remote code. As a result, they can potentially gain control over the WordPress site, posing significant risks to its integrity and security.",Wordpress,"The Events Calendar Countdown Addon,The Events Calendar Events Notification Bar Addon,Cool Timeline (horizontal & Vertical Timeline),Cryptocurrency Payment & Donation Box – Accept Payments In Any Cryptocurrency On Your WP Site For Free,Events Search For The Events Calendar,Cryptocurrency Widgets For Elementor,Event Single Page Builder For The Event Calendar,Events Shortcodes For The Events Calendar,Cryptocurrency Widgets – Price Ticker & Coins List,Events Widgets For Elementor And The Events Calendar",8.8,HIGH,0.0081599997356534,false,,false,false,false,,false,false,2023-06-07T01:51:53.458Z,0