Vulnerability index

Browse CVEs

6,923 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
S\/4 Hana MEDIUM 6.5
CVE-2024-34691

Manage Incoming Payment Files (F1680) of SAP S/4HANA does not perform necessary authorization checks for an authenticated user, resulting in escalati…

Patch available
Fix from $1,600 2024-06-11
Unclassified HIGH 7.6
CVE-2024-34800

Missing Authorization vulnerability in Crafthemes Crafthemes Demo Import crafthemes-demo-import allows Exploiting Incorrectly Configured Access Contr…

Mitigation only
Fix from $1,950 2024-06-10
Rafflepress MEDIUM 6.3
CVE-2024-4745

Missing Authorization vulnerability in RafflePress Giveaways and Contests by RafflePress.This issue affects Giveaways and Contests by RafflePress: fr…

Fix: 1.12.5+
Fix from $1,600 2024-06-10
Netgsm MEDIUM 6.3
CVE-2024-4746

Missing Authorization vulnerability in netgsm Netgsm netgsm allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affect…

Fix: after 2.9.16
Fix from $1,600 2024-06-10
Wp Time Slots Booking Form CRITICAL 9.8
CVE-2024-35735

Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Form: from n/a through 1.2.11.

Fix: 1.2.12+
Fix from $2,300 2024-06-10
Awesome Support HIGH 8.8
CVE-2024-35741

Missing Authorization vulnerability in Awesome Support Team Awesome Support.This issue affects Awesome Support: from n/a through 6.1.7.

Fix: 6.1.8+
Fix from $1,950 2024-06-10
Easy Forms For Mailchimp HIGH 7.3
CVE-2024-35742

Missing Authorization vulnerability in Code Parrots Easy Forms for Mailchimp.This issue affects Easy Forms for Mailchimp: from n/a through 6.9.0.

Fix: after 6.9.0
Fix from $1,950 2024-06-10
Ipages Flipbook HIGH 7.3
CVE-2024-4744

Missing Authorization vulnerability in Avirtum iPages Flipbook.This issue affects iPages Flipbook: from n/a through 1.5.1.

Fix: 1.5.2+
Fix from $1,950 2024-06-10
Element Kit For Elementor HIGH 8.8
CVE-2024-35725

Missing Authorization vulnerability in LA-Studio LA-Studio Element Kit for Elementor.This issue affects LA-Studio Element Kit for Elementor: from n/a…

Fix: 1.3.7.4+
Fix from $1,950 2024-06-10
Buddypress Woocommerce My Account Integration. Create Woocommerce Member Pages HIGH 8.8
CVE-2024-35726

Missing Authorization vulnerability in ThemeKraft WooBuddy.This issue affects WooBuddy: from n/a through 3.4.19.

Fix: 3.4.20+
Fix from $1,950 2024-06-10
Extra Product Options For Woocommerce HIGH 8.8
CVE-2024-35727

Missing Authorization vulnerability in actpro Extra Product Options for WooCommerce.This issue affects Extra Product Options for WooCommerce: from n/…

Fix: 3.0.7+
Fix from $1,950 2024-06-10
Tickera HIGH 8.8
CVE-2024-35729

Missing Authorization vulnerability in Tickera Tickera tickera-event-ticketing-system allows Exploiting Incorrectly Configured Access Control Securit…

Fix: 3.5.2.7+
Fix from $1,950 2024-06-10
Image Gallery HIGH 8.8
CVE-2024-35721

Missing Authorization vulnerability in A WP Life Image Gallery – Lightbox Gallery, Responsive Photo Gallery, Masonry Gallery.This issue affects Image…

Fix: 1.4.6+
Fix from $1,950 2024-06-10
Slider Responsive Slideshow HIGH 8.8
CVE-2024-35722

Missing Authorization vulnerability in A WP Life Slider Responsive Slideshow – Image slider, Gallery slideshow.This issue affects Slider Responsive S…

Fix: 1.4.2+
Fix from $1,950 2024-06-10
Dashboard To Do List HIGH 8.8
CVE-2024-35723

Missing Authorization vulnerability in Andrew Dashboard To-Do List dashboard-to-do-list.This issue affects Dashboard To-Do List: from n/a through <= …

Fix: 1.3.0+
Fix from $1,950 2024-06-10
Bosa Elementor Addons And Templates For Woocommerce HIGH 8.8
CVE-2024-35724

Missing Authorization vulnerability in Bosa Themes Bosa Elementor Addons and Templates for WooCommerce.This issue affects Bosa Elementor Addons and T…

Fix: 1.0.13+
Fix from $1,950 2024-06-10
12 Step Meeting List HIGH 8.8
CVE-2024-22296

Missing Authorization vulnerability in Code for Recovery 12 Step Meeting List.This issue affects 12 Step Meeting List: from n/a through 3.14.28.

Fix: 3.14.29+
Fix from $1,950 2024-06-10
Amelia CRITICAL 9.8
CVE-2024-22298

Missing Authorization vulnerability in TMS Amelia ameliabooking.This issue affects Amelia: from n/a through 1.0.98.

Fix: 1.0.99+
Fix from $2,300 2024-06-10
Pilotpress HIGH 8.8
CVE-2024-23524

Missing Authorization vulnerability in ONTRAPORT Inc. PilotPress.This issue affects PilotPress: from n/a through 2.0.30.

Fix: 2.0.31+
Fix from $1,950 2024-06-10
Media Slider HIGH 8.8
CVE-2024-35717

Missing Authorization vulnerability in A WP Life Media Slider – Photo Sleder, Video Slider, Link Slider, Carousal Slideshow.This issue affects Media …

Fix: 1.4.0+
Fix from $1,950 2024-06-10
Album Gallery HIGH 8.8
CVE-2024-35720

Missing Authorization vulnerability in A WP Life Album Gallery – WordPress Gallery.This issue affects Album Gallery – WordPress Gallery: from n/a thr…

Fix: 1.5.8+
Fix from $1,950 2024-06-10
Rabbitloader HIGH 8.8
CVE-2024-21751

Missing Authorization vulnerability in RabbitLoader.This issue affects RabbitLoader: from n/a through 2.19.13.

Fix: 2.19.14+
Fix from $1,950 2024-06-10
Woocommerce Dropshipping MEDIUM 5.3
CVE-2024-35748

Missing Authorization vulnerability in OPMC WooCommerce Dropshipping.This issue affects WooCommerce Dropshipping: from n/a through 5.0.4.

Fix: after 5.0.4
Fix from $1,600 2024-06-09
Websupporter Filter Custom Fields \& Taxonomies Light HIGH 8.8
CVE-2024-32081

Missing Authorization vulnerability in Websupporter Filter Custom Fields & Taxonomies Light.This issue affects Filter Custom Fields & Taxonomies Ligh…

Fix: after 1.05
Fix from $1,950 2024-06-09
Adfoxly CRITICAL 9.8
CVE-2024-34802

Missing Authorization vulnerability in AdFoxly AdFoxly – Ad Manager, AdSense Ads & Ads.Txt.This issue affects AdFoxly – Ad Manager, AdSense Ads & Ads…

Fix: after 1.8.5
Fix from $2,300 2024-06-09
Upload Fields For Wpforms CRITICAL 9.8
CVE-2024-35661

Missing Authorization vulnerability in SoftLab Upload Fields for WPForms.This issue affects Upload Fields for WPForms: from n/a through 1.0.2.

Fix: after 1.0.2
Fix from $2,300 2024-06-09
Simple Cod Fees For Woocommerce HIGH 8.8
CVE-2024-35662

Missing Authorization vulnerability in Andreas Sofantzis Simple COD Fees for WooCommerce.This issue affects Simple COD Fees for WooCommerce: from n/a…

Fix: after 2.0.2
Fix from $1,950 2024-06-09
Eventprime CRITICAL 9.8
CVE-2024-31275

Missing Authorization vulnerability in Metagauss EventPrime.This issue affects EventPrime: from n/a through 3.3.4.

Fix: 3.3.5+
Fix from $2,300 2024-06-09
Products\, Order \& Customers Export For Woocommerce CRITICAL 9.8
CVE-2024-31276

Missing Authorization vulnerability in WPFactory Products, Order & Customers Export for WooCommerce.This issue affects Products, Order & Customers Ex…

Fix: 2.0.9+
Fix from $2,300 2024-06-09
Advanced Local Pickup For Woocommerce CRITICAL 9.8
CVE-2024-31283

Missing Authorization vulnerability in zorem Advanced Local Pickup for WooCommerce.This issue affects Advanced Local Pickup for WooCommerce: from n/a…

Fix: 1.6.3+
Fix from $2,300 2024-06-09