Filtered by vendor Purethemes Subscriptions
Filtered by product Workscout Core Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-59572 2 Purethemes, Wordpress 2 Workscout Core, Wordpress 2025-09-23 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in purethemes WorkScout-Core allows Cross Site Request Forgery. This issue affects WorkScout-Core: from n/a through n/a.
CVE-2021-24246 1 Purethemes 2 Workscout, Workscout Core 2024-11-21 5.4 Medium
The Workscout Core WordPress plugin before 1.3.4, used by the WorkScout Theme did not sanitise the chat messages sent via the workscout_send_message_chat AJAX action, leading to Stored Cross-Site Scripting and Cross-Frame Scripting issues