Vulnerability index

Browse CVEs

6,923 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
Sublanguage HIGH 8.8
CVE-2023-36695

Missing Authorization vulnerability in Maxime Schoeni Sublanguage.This issue affects Sublanguage: from n/a through 2.9.

Fix: 2.10+
Fix from $1,950 2024-06-14
Unclassified MEDIUM 6.5
CVE-2023-29174

Missing Authorization vulnerability in NervyThemes SKU Label Changer For WooCommerce.This issue affects SKU Label Changer For WooCommerce: from n/a t…

Mitigation only
Fix from $1,600 2024-06-14
Sendpress CRITICAL 9.8
CVE-2023-35040

Missing Authorization vulnerability in SendPress SendPress Newsletters.This issue affects SendPress Newsletters: from n/a through 1.23.11.6.

Fix: after 1.23.11.6
Fix from $2,300 2024-06-14
Newsletter MEDIUM 6.5
CVE-2024-5674

The Newsletter - API v1 and v2 addon plugin for WordPress is vulnerable to unauthorized subscribers management due to PHP type juggling issue on the …

Fix: 2.4.6+
Fix from $1,600 2024-06-12
Instawp Connect CRITICAL 9.8
CVE-2024-4898

The InstaWP Connect – 1-click WP Staging & Migration plugin for WordPress is vulnerable to arbitrary option updates due to a missing authorization ch…

Fix: 0.1.0.39+
Fix from $2,300 2024-06-12
Unclassified HIGH 7.5
CVE-2023-48280

Missing Authorization vulnerability in Consensu.IO Consensu.Io.This issue affects Consensu.Io: from n/a through 1.0.1.

No fix yet
Fix from $1,950 2024-06-12
Unclassified MEDIUM 5.3
CVE-2023-51413

Missing Authorization vulnerability in Piotnet Forms.This issue affects Piotnet Forms: from n/a through 1.0.29.

No fix yet
Fix from $1,600 2024-06-12
Weforms HIGH 8.8
CVE-2023-51524

Missing Authorization vulnerability in weForms.This issue affects weForms: from n/a through 1.6.18.

Fix: 1.6.19+
Fix from $1,950 2024-06-12
Pricing Deals For Woocommerce MEDIUM 5.3
CVE-2023-41240

Missing Authorization vulnerability in Vark Pricing Deals for WooCommerce.This issue affects Pricing Deals for WooCommerce: from n/a through 2.0.3.2.

Fix: after 2.0.3.2
Fix from $1,600 2024-06-12
Simple Org Chart MEDIUM 5.3
CVE-2023-40603

Missing Authorization vulnerability in Gangesh Matta Simple Org Chart.This issue affects Simple Org Chart: from n/a through 2.3.4.

Fix: after 2.3.4
Fix from $1,600 2024-06-12
Unclassified MEDIUM 5.4
CVE-2023-40672

Missing Authorization vulnerability in Hardik Chavada Sticky Social Media Icons.This issue affects Sticky Social Media Icons: from n/a through 2.1.

Mitigation only
Fix from $1,600 2024-06-12
Unclassified MEDIUM 6.5
CVE-2024-5468

The WordPress Header Builder Plugin – Pearl plugin for WordPress is vulnerable to unauthorized site option deletion due to a missing validation and c…

Mitigation only
Fix from $1,600 2024-06-12
Integrate Google Drive MEDIUM 6.3
CVE-2023-52177

Missing Authorization vulnerability in SoftLab Integrate Google Drive.This issue affects Integrate Google Drive: from n/a through 1.3.3.

Fix: 1.3.4+
Fix from $1,600 2024-06-12
Profilegrid MEDIUM 6.3
CVE-2023-52117

Missing Authorization vulnerability in Metagauss ProfileGrid.This issue affects ProfileGrid: from n/a through 5.6.6.

Fix: 5.6.7+
Fix from $1,600 2024-06-12
Sms Plugin For Woocommerce MEDIUM 5.4
CVE-2023-51679

Missing Authorization vulnerability in BulkGate BulkGate SMS Plugin for WooCommerce.This issue affects BulkGate SMS Plugin for WooCommerce: from n/a …

Fix: after 3.0.2
Fix from $1,600 2024-06-12
Quotes For Woocommerce MEDIUM 6.3
CVE-2023-51680

Missing Authorization vulnerability in TechnoVama Quotes for WooCommerce.This issue affects Quotes for WooCommerce: from n/a through 2.0.1.

Fix: 2.0.2+
Fix from $1,600 2024-06-12
Funnelkit Checkout MEDIUM 5.4
CVE-2023-51671

Missing Authorization vulnerability in FunnelKit FunnelKit Checkout.This issue affects FunnelKit Checkout: from n/a through 3.10.3.

Fix: 3.11.0+
Fix from $1,600 2024-06-12
Awesome Support Wordpress Helpdesk \& Support HIGH 7.3
CVE-2023-51537

Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a through 6.1.5.

Fix: after 6.1.5
Fix from $1,950 2024-06-12
Dicom Viewer HIGH 8.8
CVE-2024-33606

An attacker could retrieve sensitive files (medical images) as well as plant new medical images or overwrite existing medical images on a MicroDicom …

Fix: 2024.2+
Fix from $1,950 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-34768

Missing Authorization vulnerability in Fastly.This issue affects Fastly: from n/a through 1.2.25.

No fix yet
Fix from $1,600 2024-06-11
Bookingpress MEDIUM 5.3
CVE-2024-34799

Missing Authorization vulnerability in Repute Infosystems BookingPress.This issue affects BookingPress: from n/a through 1.0.82.

Fix: 1.0.83+
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.4
CVE-2024-34804

Missing Authorization vulnerability in Tagembed.This issue affects Tagembed: from n/a through 5.8.

Mitigation only
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.4
CVE-2024-34815

Missing Authorization vulnerability in Javier Carazo Import and export users and customers import-users-from-csv-with-meta.This issue affects Import …

Mitigation only
Fix from $1,600 2024-06-11
Podlove Podcast Publisher HIGH 8.8
CVE-2024-32143

Missing Authorization vulnerability in Podlove Podlove Podcast Publisher.This issue affects Podlove Podcast Publisher: from n/a through 4.1.0.

Fix: 4.1.1+
Fix from $1,950 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-34758

Missing Authorization vulnerability in Wpmet WP Fundraising Donation and Crowdfunding Platform.This issue affects WP Fundraising Donation and Crowdfu…

Mitigation only
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-34763

Missing Authorization vulnerability in Saleswonder Team: Tobias Builder for WooCommerce reviews shortcodes – ReviewShort woo-product-reviews-shortcod…

Mitigation only
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.3
CVE-2023-48273

Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Preloader for Website.This issue affects Preloader for Website: from n/a th…

Mitigation only
Fix from $1,600 2024-06-11
Woocommerce Wishlist MEDIUM 5.3
CVE-2024-34819

Missing Authorization vulnerability in Moreconvert Team MC Woocommerce Wishlist smart-wishlist-for-more-convert.This issue affects MC Woocommerce Wis…

Fix: 1.7.3+
Fix from $1,600 2024-06-11
Contact List MEDIUM 5.3
CVE-2024-34821

Missing Authorization vulnerability in Anssi Laitila Contact List contact-list.This issue affects Contact List: from n/a through <= 2.9.87.

Fix: 2.9.88+
Fix from $1,600 2024-06-11
Wemail MEDIUM 5.3
CVE-2024-34822

Missing Authorization vulnerability in weDevs weMail.This issue affects weMail: from n/a through 1.14.2.

Fix: 1.14.3+
Fix from $1,600 2024-06-11