Vulnerability index

Browse CVEs

6,923 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
Unclassified HIGH 7.6
CVE-2023-45658

Missing Authorization vulnerability in POSIMYTH Nexter.This issue affects Nexter: from n/a through 2.0.3.

Mitigation only
Fix from $1,950 2024-06-19
Ultra HIGH 8.8
CVE-2023-46146

Missing Authorization vulnerability in Themify Themify Ultra.This issue affects Themify Ultra: from n/a through 7.3.5.

Fix: 7.3.6+
Fix from $1,950 2024-06-19
Unclassified HIGH 7.3
CVE-2023-40004EPSS 10%

Missing Authorization vulnerability in ServMask All-in-One WP Migration Box Extension, ServMask All-in-One WP Migration OneDrive Extension, ServMask …

Mitigation only
Fix from $1,950 2024-06-19
Unclassified HIGH 8.2
CVE-2023-40608

Missing Authorization vulnerability in Paid Memberships Pro Paid Memberships Pro CCBill Gateway.This issue affects Paid Memberships Pro CCBill Gatewa…

Mitigation only
Fix from $1,950 2024-06-19
Jetpack HIGH 8.8
CVE-2023-47788

Missing Authorization vulnerability in Automattic Jetpack.This issue affects Jetpack: from n/a before 12.7.

Fix: 12.7+
Fix from $1,950 2024-06-19
Jetelements HIGH 7.5
CVE-2023-48759

Missing Authorization vulnerability in Crocoblock JetElements For Elementor.This issue affects JetElements For Elementor: from n/a through 2.6.13.

Fix: 2.6.13.1+
Fix from $1,950 2024-06-19
Jetelements CRITICAL 9.8
CVE-2023-48760

Missing Authorization vulnerability in Crocoblock JetElements For Elementor.This issue affects JetElements For Elementor: from n/a through 2.6.13.

Fix: 2.6.13.1+
Fix from $2,300 2024-06-19
Jetelements MEDIUM 6.3
CVE-2023-48761

Missing Authorization vulnerability in Crocoblock JetElements For Elementor.This issue affects JetElements For Elementor: from n/a through 2.6.13.

Fix: 2.6.13.1+
Fix from $1,600 2024-06-19
Unclassified HIGH 8.3
CVE-2023-47771

Missing Authorization vulnerability in ThemePunch OHG Essential Grid.This issue affects Essential Grid: from n/a through 3.0.18.

Mitigation only
Fix from $1,950 2024-06-19
Unclassified HIGH 8.3
CVE-2023-47783

Missing Authorization vulnerability in Thrive Themes Thrive Theme Builder.This issue affects Thrive Theme Builder: from n/a before 3.24.0.

Mitigation only
Fix from $1,950 2024-06-19
Unclassified MEDIUM 6.4
CVE-2024-5768

The MIMO Woocommerce Order Tracking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the …

Mitigation only
Fix from $1,600 2024-06-19
Aliexpress Dropshipping With Alinext MEDIUM 6.3
CVE-2024-4450

The AliExpress Dropshipping with AliNext Lite plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several …

Fix: 3.3.7+
Fix from $1,600 2024-06-19
Youtrack HIGH 8.1
CVE-2024-38506

In JetBrains YouTrack before 2024.2.34646 user without appropriate permissions could enable the auto-attach option for workflows

Fix: 2024.2.34646+
Fix from $1,950 2024-06-18
Youtrack MEDIUM 5.3
CVE-2024-38504

In JetBrains YouTrack before 2024.2.34646 the Guest User Account was enabled for attaching files to articles

Fix: 2024.2.34646+
Fix from $1,600 2024-06-18
Ibtana MEDIUM 5.3
CVE-2024-5541

The Ibtana – WordPress Website Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on t…

Fix: after 1.2.3.3
Fix from $1,600 2024-06-18
Scheduling Plugin MEDIUM 6.5
CVE-2024-1634

The Scheduling Plugin – Online Booking for WordPress plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability chec…

Fix: after 3.5.10
Fix from $1,600 2024-06-18
Popup Builder HIGH 8.1
CVE-2023-6696

The Popup Builder – Create highly converting, mobile friendly marketing popups. plugin for WordPress is vulnerable to unauthorized access of function…

Fix: 4.3.2+
Fix from $1,950 2024-06-15
Popup Builder MEDIUM 6.4
CVE-2024-2544

The Popup Builder plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing capability check on all A…

Fix: 4.3.2+
Fix from $1,600 2024-06-15
Snipe It HIGH 8.1
CVE-2024-5685

Users with "User:edit" and "Self:api" permissions can promote or demote themselves or other users by performing changes to the group's memberships vi…

Fix: 6.4.2+
Fix from $1,950 2024-06-14
Ninja Tables MEDIUM 5.3
CVE-2024-23504

Missing Authorization vulnerability in WPManageNinja LLC Ninja Tables.This issue affects Ninja Tables: from n/a through 5.0.5.

Fix: 5.0.6+
Fix from $1,600 2024-06-14
Returns And Warranty Requests MEDIUM 6.5
CVE-2023-51495

Missing Authorization vulnerability in Woo WooCommerce Warranty Requests.This issue affects WooCommerce Warranty Requests: from n/a through 2.2.7.

Fix: 2.3.0+
Fix from $1,600 2024-06-14
Returns And Warranty Requests MEDIUM 5.3
CVE-2023-51496

Missing Authorization vulnerability in Woo WooCommerce Warranty Requests.This issue affects WooCommerce Warranty Requests: from n/a through 2.2.7.

Fix: 2.3.0+
Fix from $1,600 2024-06-14
Shipping Multiple Addresses MEDIUM 5.4
CVE-2023-51497

Missing Authorization vulnerability in Woo WooCommerce Ship to Multiple Addresses.This issue affects WooCommerce Ship to Multiple Addresses: from n/a…

Fix: 3.8.10+
Fix from $1,600 2024-06-14
Everest Forms MEDIUM 5.3
CVE-2023-51377

Missing Authorization vulnerability in WPEverest Everest Forms.This issue affects Everest Forms: from n/a through 2.0.3.

Fix: 2.0.3.1+
Fix from $1,600 2024-06-14
Unclassified HIGH 7.3
CVE-2024-1094

The Timetics- AI-powered Appointment Booking with Visual Seat Plan and ultimate Calendar Scheduling plugin for WordPress is vulnerable to unauthorize…

Mitigation only
Fix from $1,950 2024-06-14
Quiz And Survey Master MEDIUM 5.3
CVE-2023-51507

Missing Authorization vulnerability in ExpressTech Quiz And Survey Master.This issue affects Quiz And Survey Master: from n/a through 8.1.16.

Fix: 8.1.17+
Fix from $1,600 2024-06-14
Business Directory MEDIUM 5.4
CVE-2023-51516

Missing Authorization vulnerability in Business Directory Team Business Directory Plugin.This issue affects Business Directory Plugin: from n/a throu…

Fix: 6.3.10+
Fix from $1,600 2024-06-14
Wp Dummy Content Generator MEDIUM 5.3
CVE-2023-37394

Missing Authorization vulnerability in Deepak anand WP Dummy Content Generator.This issue affects WP Dummy Content Generator: from n/a through 2.3.0.

Fix: 3.0.0+
Fix from $1,600 2024-06-14
Bbs E Popup CRITICAL 9.8
CVE-2023-36504

Missing Authorization vulnerability in BBS e-Theme BBS e-Popup.This issue affects BBS e-Popup: from n/a through 2.4.5.

Fix: after 2.4.5
Fix from $2,300 2024-06-14
Unclassified MEDIUM 6.3
CVE-2023-36694

Missing Authorization vulnerability in Bryan Lee Kingkong Board.This issue affects Kingkong Board: from n/a through 2.1.0.2.

No fix yet
Fix from $1,600 2024-06-14