
verbb/comments
Releases144
Frequency3 weeks 6 days
Last Release
Stars137
A Craft CMS plugin for managing comments directly within the CMS.
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 6.5 MEDIUM | 4.3 MEDIUM | ||
An issue was discovered in the Comments plugin before 1.5.5 for Craft CMS. CSRF affects comment integrity. | |||
| 5.4 MEDIUM | 3.5 LOW | ||
An issue was discovered in the Comments plugin before 1.5.6 for Craft CMS. There is stored XSS via a guest name. | |||
| 5.4 MEDIUM | 3.5 LOW | ||
An issue was discovered in the Comments plugin before 1.5.5 for Craft CMS. There is stored XSS via an asset volume name. | |||