Vulnerability index

Browse CVEs

6,923 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
Radio Player MEDIUM 5.3
CVE-2024-34753

Missing Authorization vulnerability in SoftLab Radio Player.This issue affects Radio Player: from n/a through 2.0.73.

Fix: 2.0.74+
Fix from $1,600 2024-06-11
Happyforms MEDIUM 5.3
CVE-2024-23521

Missing Authorization vulnerability in Happyforms.This issue affects Happyforms: from n/a through 1.25.10.

Fix: 1.25.11+
Fix from $1,600 2024-06-11
Mailchimp MEDIUM 5.3
CVE-2023-51682

Missing Authorization vulnerability in ibericode MC4WP.This issue affects MC4WP: from n/a through 4.9.9.

Fix: 4.9.10+
Fix from $1,600 2024-06-11
Post Smtp CRITICAL 9.8
CVE-2023-52233

Missing Authorization vulnerability in Post SMTP Post SMTP Mailer/Email Log.This issue affects Post SMTP Mailer/Email Log: from n/a through 2.8.6.

Fix: 2.8.7+
Fix from $2,300 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-37296

The Aimeos HTML client provides Aimeos HTML components for e-commerce projects. Starting in version 2020.04.1 and prior to versions 2020.10.27, 2021.…

Patch available
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.4
CVE-2024-35663

Missing Authorization vulnerability in HahnCreativeGroup WP Translate.This issue affects WP Translate: from n/a through 5.3.0.

Mitigation only
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-35665

Missing Authorization vulnerability in namithjawahar Insert Post Ads.This issue affects Insert Post Ads: from n/a through 1.3.2.

Mitigation only
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-35667

Missing Authorization vulnerability in WP EasyCart.This issue affects WP EasyCart: from n/a through 5.5.19.

Mitigation only
Fix from $1,600 2024-06-11
Unclassified MEDIUM 6.5
CVE-2024-34820

Missing Authorization vulnerability in If So Plugin If-So Dynamic Content Personalization.This issue affects If-So Dynamic Content Personalization: f…

Mitigation only
Fix from $1,600 2024-06-11
Unclassified MEDIUM 6.3
CVE-2024-34826

Missing Authorization vulnerability in Saleswonder Team: Tobias CF7 WOW Styler cf7-styler.This issue affects CF7 WOW Styler: from n/a through <= 1.6.…

Mitigation only
Fix from $1,600 2024-06-11
Unclassified HIGH 8.6
CVE-2024-24703

Missing Authorization vulnerability in MultiVendorX WC Marketplace.This issue affects WC Marketplace: from n/a through 4.0.25.

No fix yet
Fix from $1,950 2024-06-11
Unclassified MEDIUM 5.3
CVE-2023-51498

Missing Authorization vulnerability in Woo WooCommerce Canada Post Shipping.This issue affects WooCommerce Canada Post Shipping: from n/a through 2.8…

Mitigation only
Fix from $1,600 2024-06-11
Unclassified MEDIUM 6.5
CVE-2023-52199

Missing Authorization vulnerability in Matthias Pfefferle & Automattic ActivityPub.This issue affects ActivityPub: from n/a through 1.0.5.

No fix yet
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-35683

Missing Authorization vulnerability in Teplitsa of social technologies Leyka.This issue affects Leyka: from n/a through 3.31.1.

No fix yet
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-34442

Missing Authorization vulnerability in weDevs weDocs.This issue affects weDocs: from n/a through 2.1.4.

Mitigation only
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.4
CVE-2023-52183

Missing Authorization vulnerability in WebToffee WordPress Backup & Migration.This issue affects WordPress Backup & Migration: from n/a through 1.4.3.

Mitigation only
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-34813

Missing Authorization vulnerability in Moreconvert Team MC Woocommerce Wishlist smart-wishlist-for-more-convert.This issue affects MC Woocommerce Wis…

No fix yet
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-35685

Missing Authorization vulnerability in Anders Norén Radcliffe 2.This issue affects Radcliffe 2: from n/a through 2.0.17.

No fix yet
Fix from $1,600 2024-06-11
Unclassified MEDIUM 5.4
CVE-2023-52179

Missing Authorization vulnerability in WebCodingPlace Product Expiry for WooCommerce.This issue affects Product Expiry for WooCommerce: from n/a thro…

Mitigation only
Fix from $1,600 2024-06-11
Copymatic HIGH 8.8
CVE-2024-35716

Missing Authorization vulnerability in Copymatic Copymatic – AI Content Writer & Generator.This issue affects Copymatic – AI Content Writer & Generat…

Fix: 2.0+
Fix from $1,950 2024-06-11
Load More Anything MEDIUM 6.3
CVE-2024-24704

Missing Authorization vulnerability in AddonMaster Load More Anything.This issue affects Load More Anything: from n/a through 3.3.3.

Fix: 3.3.4+
Fix from $1,600 2024-06-11
Sportspress MEDIUM 6.3
CVE-2024-34824

Missing Authorization vulnerability in ThemeBoy SportsPress – Sports Club & League Manager.This issue affects SportsPress – Sports Club & League Mana…

Fix: 2.7.21+
Fix from $1,600 2024-06-11
Gdpr Cookie Consent Banner HIGH 7.3
CVE-2024-35692

Missing Authorization vulnerability in Termly Cookie Consent.This issue affects Cookie Consent: from n/a through 3.2.

Fix: 3.2.1+
Fix from $1,950 2024-06-11
Yoast Seo MEDIUM 5.3
CVE-2023-28775

Missing Authorization vulnerability in Yoast Yoast SEO Premium.This issue affects Yoast SEO Premium: from n/a through 20.4.

Fix: 20.5+
Fix from $1,600 2024-06-11
Product Vendors MEDIUM 5.3
CVE-2023-52186

Missing Authorization vulnerability in Woo WooCommerce Product Vendors.This issue affects WooCommerce Product Vendors: from n/a through 2.2.2.

Fix: 2.2.3+
Fix from $1,600 2024-06-11
Woocommerce Conversion Tracking MEDIUM 6.3
CVE-2023-52217

Missing Authorization vulnerability in weDevs WooCommerce Conversion Tracking.This issue affects WooCommerce Conversion Tracking: from n/a through 2.…

Fix: 2.0.12+
Fix from $1,600 2024-06-11
Tutor Lms HIGH 8.8
CVE-2023-25799

Missing Authorization vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS: from n/a through 2.1.8.

Fix: 2.1.9+
Fix from $1,950 2024-06-11
Unclassified MEDIUM 5.3
CVE-2024-4319

The Advanced Contact form 7 DB plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'vsz_cf7_ex…

Mitigation only
Fix from $1,600 2024-06-11
Bw\/4hana MEDIUM 5.4
CVE-2024-37176

SAP BW/4HANA Transformation and Data Transfer Process (DTP) allows an authenticated attacker to gain higher access levels than they should have by ex…

Patch available
Fix from $1,600 2024-06-11
Student Life Cycle Management MEDIUM 5.4
CVE-2024-34690

SAP Student Life Cycle Management (SLcM) fails to conduct proper authorization checks for authenticated users, leading to the potential escalation of…

Patch available
Fix from $1,600 2024-06-11