cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2021-34637,https://securityvulnerability.io/vulnerability/CVE-2021-34637,Post Index <= 0.7.5 Cross-Site Request Forgery to Stored Cross-Site Scripting,"The Post Index WordPress plugin is vulnerable to Cross-Site Request Forgery via the OptionsPage function found in the ~/php/settings.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 0.7.5.",Wordpress,Post Index,8.8,HIGH,0.002309999894350767,false,,false,false,false,,false,false,2021-08-02T21:15:00.000Z,0 CVE-2016-10948,https://securityvulnerability.io/vulnerability/CVE-2016-10948,,The Post Indexer plugin before 3.0.6.2 for WordPress has incorrect handling of data passed to the unserialize function.,Wordpress,Post Indexer,8.1,HIGH,0.005590000189840794,false,,false,false,false,,false,false,2019-09-13T12:04:52.000Z,0 CVE-2016-10947,https://securityvulnerability.io/vulnerability/CVE-2016-10947,,The Post Indexer plugin before 3.0.6.2 for WordPress has SQL injection via the period parameter by a super admin.,Wordpress,Post Indexer,7.2,HIGH,0.0016499999910593033,false,,false,false,false,,false,false,2019-09-13T12:03:16.000Z,0