plugin

Wp Rollback Vulnerabilities

5 known security issues reported for the Wp Rollback WordPress plugin. Most recent disclosed Aug 27, 2019.

1 high 1 medium

Running Wp Rollback on your site? Check whether your installed version is affected.

Scan your site free

WP Rollback &#8211; Rollback Plugins and Themes [wp-rollback] < 1.2.3

unknown

[en] The wp-rollback plugin before 1.2.3 for WordPress has CSRF.

Affected:
up to 1.2.3
Fixed in:
1.2.3
Disclosed:
Aug 27, 2019

CVE-2015-9343 on NVD →

WP Rollback &#8211; Rollback Plugins and Themes [wp-rollback] < 1.2.3

unknown

[en] The wp-rollback plugin before 1.2.3 for WordPress has XSS.

Affected:
up to 1.2.3
Fixed in:
1.2.3
Disclosed:
Aug 27, 2019

CVE-2015-9342 on NVD →

Rollback < 1.2.3 - Cross-Site Request Forgery

high

The wp-rollback plugin before 1.2.3 for WordPress has CSRF.

CVSS:
8.8
Affected:
up to 1.2.3
Fixed in:
1.2.3
Disclosed:
Jun 28, 2015

CVE-2015-9343 on NVD →

WP Rollback < 1.2.3 - Cross-Site Scripting

medium

The wp-rollback plugin before 1.2.3 for WordPress has Cross-Site Scripting.

CVSS:
6.1
Affected:
up to 1.2.3
Fixed in:
1.2.3
Disclosed:
Jun 28, 2015

CVE-2015-9342 on NVD →

WP Rollback &#8211; Rollback Plugins and Themes [wp-rollback] < 1.2.3

unknown

This plugin is prone to a cross site scripting and cross site request forgery vulnerabilities. Because of XSS vulnerability, the attackers can display any content with no filter from a simple URL, easy to include any remote malicious javascript file. Because of CSRF, anyone can force the installation of any plugin from...

Affected:
up to 1.2.3
Fixed in:
1.2.3
Disclosed:
Jun 28, 2015

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database