Vulnerability index

Browse CVEs

6,923 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
Unclassified MEDIUM 6.5
CVE-2024-33938

Missing Authorization vulnerability in codename065 Sliding Widgets allows Cross-Site Scripting (XSS).This issue affects Sliding Widgets: from n/a thr…

Mitigation only
Fix from $1,600 2024-05-14
Apppresser MEDIUM 6.5
CVE-2024-32776

Missing Authorization vulnerability in AppPresser Team AppPresser.This issue affects AppPresser: from n/a through 4.3.0.

Fix: 4.3.1+
Fix from $1,600 2024-05-14
Unclassified HIGH 7.5
CVE-2024-32724

Missing Authorization vulnerability in Woo product importer Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy.This issue affects Sharkdro…

Mitigation only
Fix from $1,950 2024-05-14
Unclassified MEDIUM 6.5
CVE-2024-32730

SAP Enable Now Manager does not perform necessary authorization checks for an authenticated user, resulting in escalation of privileges. On successfu…

Mitigation only
Fix from $1,600 2024-05-14
Unclassified MEDIUM 5.3
CVE-2024-32719

Missing Authorization vulnerability in WP Club Manager WP Club Manager wp-club-manager.This issue affects WP Club Manager: from n/a through <= 2.2.11.

Mitigation only
Fix from $1,600 2024-05-14
Unclassified MEDIUM 6.5
CVE-2024-32717

Missing Authorization vulnerability in WPDeveloper SchedulePress.This issue affects SchedulePress: from n/a through 5.0.8.

Mitigation only
Fix from $1,600 2024-05-14
Unclassified MEDIUM 5.3
CVE-2024-1229

The SimpleShop plugin for WordPress is vulnerable to unauthorized disconnection from SimpleShop due to a missing capability check on the maybe_discon…

Mitigation only
Fix from $1,600 2024-05-14
Shoplentor MEDIUM 5.3
CVE-2023-6327

The ShopLentor (formerly WooLentor) plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the purcha…

Fix: 2.8.8+
Fix from $1,600 2024-05-14
Arforms Form Builder HIGH 8.0
CVE-2024-31270

Missing Authorization vulnerability in Repute InfoSystems ARForms Form Builder.This issue affects ARForms Form Builder: from n/a through 1.6.1.

Fix: 1.6.2+
Fix from $1,950 2024-05-08
Happy Addons For Elementor HIGH 8.8
CVE-2024-24833

Missing Authorization vulnerability in HappyMonster Happy Addons for Elementor happy-elementor-addons.This issue affects Happy Addons for Elementor: …

Fix: after 3.10.1
Fix from $1,950 2024-05-08
Unclassified MEDIUM 5.3
CVE-2024-30459

Missing Authorization vulnerability in AIpost AI WP Writer.This issue affects AI WP Writer: from n/a through 3.6.5.

Mitigation only
Fix from $1,600 2024-05-08
Unclassified HIGH 7.7
CVE-2024-1438

Missing Authorization vulnerability in PressFore Rolo Slider.This issue affects Rolo Slider: from n/a through 1.0.9.

No fix yet
Fix from $1,950 2024-05-08
Advance Product Search CRITICAL 9.8
CVE-2022-40218

Missing Authorization vulnerability in ThemeHunk Advance WordPress Search Plugin.This issue affects Advance WordPress Search Plugin: from n/a through…

Fix: 1.1.5+
Fix from $2,300 2024-05-08
Unclassified MEDIUM 6.5
CVE-2023-41651

Missing Authorization vulnerability in Multi-column Tag Map.This issue affects Multi-column Tag Map: from n/a through 17.0.26.

Mitigation only
Fix from $1,600 2024-05-08
Track It\! MEDIUM 6.5
CVE-2021-35001

BMC Track-It! GetData Missing Authorization Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive in…

Mitigation only
Fix from $1,600 2024-05-07
Android HIGH 7.8
CVE-2024-23704

In onCreate of WifiDialogActivity.java, there is a possible way to bypass the DISALLOW_ADD_WIFI_CONFIG restriction due to a missing permission check.…

Patch available
Fix from $1,950 2024-05-07
Unclassified MEDIUM 6.3
CVE-2023-31234

Missing Authorization vulnerability in Tilda Publishing.This issue affects Tilda Publishing: from n/a through 0.3.23.

No fix yet
Fix from $1,600 2024-05-07
Metform Elementor Contact Form Builder HIGH 8.8
CVE-2024-33570

Missing Authorization vulnerability in Roxnor Metform metform.This issue affects Metform: from n/a through <= 3.8.3.

Fix: 3.8.4+
Fix from $1,950 2024-05-06
Unclassified MEDIUM 6.5
CVE-2024-33576

Missing Authorization vulnerability in Ollybach WPPizza.This issue affects WPPizza: from n/a through 3.18.10.

Mitigation only
Fix from $1,600 2024-05-06
Unclassified MEDIUM 5.3
CVE-2024-33907

Missing Authorization vulnerability in Michael Nelson Print My Blog print-my-blog.This issue affects Print My Blog: from n/a through <= 3.26.2.

Mitigation only
Fix from $1,600 2024-05-06
Unclassified MEDIUM 5.3
CVE-2024-33908

Missing Authorization vulnerability in Themesgrove WidgetKit.This issue affects WidgetKit: from n/a through 2.5.0.

No fix yet
Fix from $1,600 2024-05-06
Unclassified HIGH 8.6
CVE-2024-34378

Missing Authorization vulnerability in LeadConnector.This issue affects LeadConnector: from n/a through 1.7.

No fix yet
Fix from $1,950 2024-05-06
Post Grid Master MEDIUM 5.3
CVE-2024-34372

Missing Authorization vulnerability in AddonMaster Post Grid Master.This issue affects Post Grid Master: from n/a through 3.4.7.

Fix: 3.4.8+
Fix from $1,600 2024-05-06
Academy Lms HIGH 8.8
CVE-2024-33912

Missing Authorization vulnerability in Academy LMS.This issue affects Academy LMS: from n/a through 1.9.16.

Fix: 1.9.17+
Fix from $1,950 2024-05-06
Unclassified MEDIUM 5.3
CVE-2024-33910

Missing Authorization vulnerability in Supsystic Digital Publications by Supsystic.This issue affects Digital Publications by Supsystic: from n/a thr…

No fix yet
Fix from $1,600 2024-05-06
Unclassified MEDIUM 5.4
CVE-2024-3237

The ConvertPlug plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the cp_dismiss_notice() …

Mitigation only
Fix from $1,600 2024-05-04
Unclassified MEDIUM 6.3
CVE-2024-33923

Missing Authorization vulnerability in Smartypants SP Project & Document Manager.This issue affects SP Project & Document Manager : from n/a through …

Mitigation only
Fix from $1,600 2024-05-03
Unclassified MEDIUM 5.3
CVE-2024-33929

Missing Authorization vulnerability in wpWax Directorist.This issue affects Directorist: from n/a through 7.8.6.

No fix yet
Fix from $1,600 2024-05-03
Unclassified MEDIUM 6.5
CVE-2024-33931

Missing Authorization vulnerability in ilGhera JW Player for WordPress.This issue affects JW Player for WordPress: from n/a through 2.3.3.

No fix yet
Fix from $1,600 2024-05-03
Exclusive Addons For Elementor CRITICAL 9.8
CVE-2024-33914

Missing Authorization vulnerability in Exclusive Addons Exclusive Addons Elementor.This issue affects Exclusive Addons Elementor: from n/a through 2.…

Fix: 2.6.9.2+
Fix from $2,300 2024-05-03