Vulnerability index

Browse CVEs

6,923 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
Unclassified HIGH 7.1
CVE-2023-48683

Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agen…

Mitigation only
Fix from $1,950 2024-04-29
Unclassified HIGH 7.1
CVE-2023-48684

Sensitive information disclosure and manipulation due to missing authorization. The following products are affected: Acronis Cyber Protect Cloud Agen…

Mitigation only
Fix from $1,950 2024-04-29
Unclassified MEDIUM 5.3
CVE-2024-33587

Missing Authorization vulnerability in Copy Content Protection Team Secure Copy Content Protection and Content Locking.This issue affects Secure Copy…

Mitigation only
Fix from $1,600 2024-04-29
Unclassified MEDIUM 5.4
CVE-2024-33588

Missing Authorization vulnerability in codeSavory Knowledge Base documentation & wiki plugin – BasePress.This issue affects Knowledge Base documentat…

Mitigation only
Fix from $1,600 2024-04-29
Photo Gallery MEDIUM 5.3
CVE-2024-33586

Missing Authorization vulnerability in Photo Gallery Team Photo Gallery by 10Web.This issue affects Photo Gallery by 10Web: from n/a through 1.8.20.

Fix: 1.8.21+
Fix from $1,600 2024-04-29
Kb Support MEDIUM 6.5
CVE-2024-33589

Missing Authorization vulnerability in WPOmnia KB Support.This issue affects KB Support: from n/a through 1.6.0.

Fix: 1.6.1+
Fix from $1,600 2024-04-29
Unclassified HIGH 7.5
CVE-2024-33594

Missing Authorization vulnerability in Leaky Paywall.This issue affects Leaky Paywall: from n/a through 4.20.8.

Mitigation only
Fix from $1,950 2024-04-29
Master Addons HIGH 8.8
CVE-2024-33595

Missing Authorization vulnerability in Jewel Theme Master Addons for Elementor.This issue affects Master Addons for Elementor: from n/a through 2.0.5…

Fix: 2.0.5.6+
Fix from $1,950 2024-04-29
Unclassified HIGH 7.5
CVE-2024-33591

Missing Authorization vulnerability in Tips and Tricks HQ Easy Accept Payments.This issue affects Easy Accept Payments: from n/a through 4.9.10.

Mitigation only
Fix from $1,950 2024-04-29
Unclassified MEDIUM 5.3
CVE-2024-33596

Missing Authorization vulnerability in Five Star Plugins Five Star Restaurant Reservations.This issue affects Five Star Restaurant Reservations: from…

Mitigation only
Fix from $1,600 2024-04-29
Unclassified HIGH 7.5
CVE-2024-33597

Missing Authorization vulnerability in ProFaceOff SSU.This issue affects SSU: from n/a through 1.5.0.

No fix yet
Fix from $1,950 2024-04-29
Unclassified HIGH 7.5
CVE-2024-33635

Missing Authorization vulnerability in Piotnet Piotnet Addons For Elementor Pro.This issue affects Piotnet Addons For Elementor Pro: from n/a through…

No fix yet
Fix from $1,950 2024-04-29
Unclassified MEDIUM 5.4
CVE-2024-33636

Missing Authorization vulnerability in Mahesh Vora WP Page Post Widget Clone.This issue affects WP Page Post Widget Clone: from n/a through 1.0.1.

Mitigation only
Fix from $1,600 2024-04-29
Unclassified MEDIUM 6.5
CVE-2024-33684

Missing Authorization vulnerability in Pdfcrowd Save as PDF plugin by Pdfcrowd allows Stored XSS.This issue affects Save as PDF plugin by Pdfcrowd: f…

Mitigation only
Fix from $1,600 2024-04-29
Xstore Core MEDIUM 6.5
CVE-2024-33558

Missing Authorization vulnerability in 8theme XStore Core.This issue affects XStore Core: from n/a through 5.3.5.

Fix: 5.3.9+
Fix from $1,600 2024-04-29
Unclassified MEDIUM 5.3
CVE-2024-33652

Missing Authorization vulnerability in Real Big Plugins Client Dash.This issue affects Client Dash: from n/a through 2.2.1.

Mitigation only
Fix from $1,600 2024-04-29
Unclassified CRITICAL 10.0
CVE-2024-33566

Missing Authorization vulnerability in N-Media OrderConvo allows OS Command Injection.This issue affects OrderConvo: from n/a through 12.4.

Mitigation only
Fix from $2,300 2024-04-29
Unclassified MEDIUM 5.4
CVE-2022-40975

Missing Authorization vulnerability in Aazztech Post Slider.This issue affects Post Slider: from n/a through 1.6.7.

No fix yet
Fix from $1,600 2024-04-26
Unclassified MEDIUM 5.3
CVE-2024-32826

Missing Authorization vulnerability in Vektor,Inc. VK Block Patterns.This issue affects VK Block Patterns: from n/a through 1.31.0.

Mitigation only
Fix from $1,600 2024-04-26
Blog2social MEDIUM 5.3
CVE-2024-3678

The Blog2Social: Social Media Auto Post & Scheduler plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and i…

Fix: 7.5.0+
Fix from $1,600 2024-04-26
Unclassified HIGH 8.0
CVE-2024-4163

The Skylab IGX IIoT Gateway allowed users to connect to it via a limited shell terminal (IGX). However, it was discovered that the process was runnin…

Mitigation only
Fix from $1,950 2024-04-26
Zammad MEDIUM 6.5
CVE-2024-33667

An issue was discovered in Zammad before 6.3.0. An authenticated agent could perform a remote Denial of Service attack by calling an endpoint that ac…

Fix: 6.3.0+
Fix from $1,600 2024-04-26
Unclassified MEDIUM 6.5
CVE-2024-32675

Missing Authorization vulnerability in Xfinity Soft Order Limit for WooCommerce.This issue affects Order Limit for WooCommerce: from n/a through 2.0.…

Mitigation only
Fix from $1,600 2024-04-24
Unclassified MEDIUM 5.3
CVE-2024-32677

Missing Authorization vulnerability in LoginPress LoginPress Pro.This issue affects LoginPress Pro: from n/a before 3.0.0.

No fix yet
Fix from $1,600 2024-04-24
Unclassified MEDIUM 5.3
CVE-2024-32678

Missing Authorization vulnerability in TrackShip TrackShip for WooCommerce.This issue affects TrackShip for WooCommerce: from n/a through 1.7.5.

No fix yet
Fix from $1,600 2024-04-24
Unclassified MEDIUM 5.3
CVE-2023-32127

Missing Authorization vulnerability in Daniel Powney Multi Rating allows Functionality Misuse.This issue affects Multi Rating: from n/a through 5.0.6.

Mitigation only
Fix from $1,600 2024-04-24
Unclassified MEDIUM 5.3
CVE-2023-25785

Missing Authorization vulnerability in Shoaib Saleem WP Post Rating allows Functionality Misuse.This issue affects WP Post Rating: from n/a through 2…

Mitigation only
Fix from $1,600 2024-04-24
Quiz Maker MEDIUM 5.3
CVE-2023-23985

Missing Authorization vulnerability in Quiz Maker team Quiz Maker.This issue affects Quiz Maker: from n/a through 6.3.9.4.

Fix: 6.3.9.5+
Fix from $1,600 2024-04-24
Armember CRITICAL 9.1
CVE-2024-32948

Missing Authorization vulnerability in Repute Infosystems ARMember.This issue affects ARMember: from n/a through 4.0.28.

Fix: 4.0.29+
Fix from $2,300 2024-04-24
Unclassified MEDIUM 6.5
CVE-2024-32951

Missing Authorization vulnerability in BloomPixel Max Addons Pro for Bricks.This issue affects Max Addons Pro for Bricks: from n/a through 1.6.1.

Mitigation only
Fix from $1,600 2024-04-24