Vulnerability index

Browse CVEs

6,923 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
Multiple Page Generator HIGH 8.8
CVE-2024-30235

Missing Authorization vulnerability in Themeisle Multiple Page Generator Plugin – MPG.This issue affects Multiple Page Generator Plugin – MPG: from n…

Fix: 3.4.1+
Fix from $1,950 2024-03-26
Unclassified MEDIUM 6.5
CVE-2024-22156

Missing Authorization vulnerability in SNP Digital SalesKing.This issue affects SalesKing: from n/a through 1.6.15.

No fix yet
Fix from $1,600 2024-03-26
Unclassified MEDIUM 6.5
CVE-2024-2906

Missing Authorization vulnerability in SoftLab Radio Player.This issue affects Radio Player: from n/a through 2.0.73.

Mitigation only
Fix from $1,600 2024-03-26
Wholesalex HIGH 8.8
CVE-2024-30234

Missing Authorization vulnerability in Wholesale Team WholesaleX.This issue affects WholesaleX: from n/a through 1.3.1.

Fix: 1.3.2+
Fix from $1,950 2024-03-26
Void Contact Form 7 Widget For Elementor Page Builder HIGH 8.8
CVE-2023-52214

Missing Authorization vulnerability in voidCoders Void Contact Form 7 Widget For Elementor Page Builder.This issue affects Void Contact Form 7 Widget…

Fix: 2.4+
Fix from $1,950 2024-03-26
Box Office HIGH 8.8
CVE-2024-24799

Missing Authorization vulnerability in WooCommerce WooCommerce Box Office.This issue affects WooCommerce Box Office: from n/a through 1.2.2.

Fix: 1.2.3+
Fix from $1,950 2024-03-26
Propertyhive MEDIUM 6.5
CVE-2024-24718

Missing Authorization vulnerability in PropertyHive.This issue affects PropertyHive: from n/a through 2.0.6.

Fix: 2.0.7+
Fix from $1,600 2024-03-26
Unclassified MEDIUM 5.3
CVE-2024-24805

Missing Authorization vulnerability in Deepak anand WP Dummy Content Generator.This issue affects WP Dummy Content Generator: from n/a through 3.1.2.

Mitigation only
Fix from $1,600 2024-03-26
Google Maps Cp HIGH 8.8
CVE-2023-25039

Missing Authorization vulnerability in CodePeople Google Maps CP.This issue affects Google Maps CP: from n/a through 1.0.43.

Fix: after 1.0.43
Fix from $1,950 2024-03-25
Points And Rewards For Woocommerce CRITICAL 9.8
CVE-2023-27608

Missing Authorization vulnerability in WP Swings Points and Rewards for WooCommerce.This issue affects Points and Rewards for WooCommerce: from n/a t…

Fix: after 1.5.0
Fix from $2,300 2024-03-25
Betheme HIGH 8.8
CVE-2022-45356

Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1.

Fix: 26.6.3+
Fix from $1,950 2024-03-25
Unclassified MEDIUM 5.4
CVE-2022-45851

Missing Authorization vulnerability in ShareThis ShareThis Dashboard for Google Analytics.This issue affects ShareThis Dashboard for Google Analytics…

Mitigation only
Fix from $1,600 2024-03-25
Mainwp Wordfence Extension MEDIUM 5.4
CVE-2023-22699

Missing Authorization vulnerability in MainWP MainWP Wordfence Extension.This issue affects MainWP Wordfence Extension: from n/a through 4.0.7.

Fix: 4.0.8+
Fix from $1,600 2024-03-25
Th Advance Product Search CRITICAL 9.8
CVE-2022-38057

Missing Authorization vulnerability in ThemeHunk Advance WordPress Search Plugin.This issue affects Advance WordPress Search Plugin: from n/a through…

Fix: 1.2.2+
Fix from $2,300 2024-03-25
Seo Plugin By Squirrly Seo MEDIUM 6.3
CVE-2022-44626

Missing Authorization vulnerability in Squirrly SEO Plugin by Squirrly SEO.This issue affects SEO Plugin by Squirrly SEO: from n/a through 12.1.20.

Fix: 12.1.21+
Fix from $1,600 2024-03-25
Betheme MEDIUM 5.4
CVE-2022-45351

Missing Authorization vulnerability in Muffingroup Betheme.This issue affects Betheme: from n/a through 26.6.1.

Fix: after 26.6.1
Fix from $1,600 2024-03-25
Realhomes HIGH 8.8
CVE-2023-37885

Missing Authorization vulnerability in InspiryThemes RealHomes.This issue affects RealHomes: from n/a through 4.0.2.

Fix: 4.3.8+
Fix from $1,950 2024-03-25
Realhomes HIGH 8.8
CVE-2023-37886

Missing Authorization vulnerability in InspiryThemes RealHomes.This issue affects RealHomes: from n/a through 4.0.2.

Fix: 4.3.8+
Fix from $1,950 2024-03-25
Eventprime HIGH 7.5
CVE-2024-24832

Missing Authorization vulnerability in Metagauss EventPrime.This issue affects EventPrime: from n/a through 3.3.9.

Fix: 3.4.0+
Fix from $1,950 2024-03-23
Bear Woocommerce Bulk Editor And Products Manager Professional MEDIUM 6.5
CVE-2024-24835

Missing Authorization vulnerability in realmag777 BEAR.This issue affects BEAR: from n/a through 1.1.4.

Fix: 1.1.4.1+
Fix from $1,600 2024-03-23
Element Pack MEDIUM 5.4
CVE-2024-24840

Missing Authorization vulnerability in BdThemes Element Pack Elementor Addons.This issue affects Element Pack Elementor Addons: from n/a through 5.4.…

Fix: 5.4.12+
Fix from $1,600 2024-03-23
Download Media HIGH 8.8
CVE-2024-27190

Missing Authorization vulnerability in Jean-David Daviet Download Media.This issue affects Download Media: from n/a through 1.4.2.

Fix: after 1.4.2
Fix from $1,950 2024-03-21
Best Student Management System HIGH 7.5
CVE-2023-49979

A directory listing vulnerability in Customer Support System v1 allows attackers to list directories and sensitive files within the application witho…

No fix yet
Fix from $1,950 2024-03-21
Best Student Result Management System HIGH 7.5
CVE-2023-49980

A directory listing vulnerability in Best Student Result Management System v1.0 allows attackers to list directories and sensitive files within the a…

No fix yet
Fix from $1,950 2024-03-21
School Fees Management System HIGH 7.5
CVE-2023-49981

A directory listing vulnerability in School Fees Management System v1.0 allows attackers to list directories and sensitive files within the applicati…

No fix yet
Fix from $1,950 2024-03-21
Unclassified MEDIUM 6.5
CVE-2023-52229

Missing Authorization vulnerability in Save as PDF plugin by Pdfcrowd Word Replacer Pro.This issue affects Word Replacer Pro: from n/a through 1.0.

No fix yet
Fix from $1,600 2024-03-20
Olive One Click Demo Import CRITICAL 9.8
CVE-2024-2702

Missing Authorization vulnerability in Olive Themes Olive One Click Demo Import allows importing settings and data, ultimately leading to XSS.This is…

Fix: 1.1.2+
Fix from $2,300 2024-03-20
Unclassified MEDIUM 5.3
CVE-2024-1181

The Coming Soon, Under Construction & Maintenance Mode By Dazzler plugin for WordPress is vulnerable to maintenance mode bypass in all versions up to…

Mitigation only
Fix from $1,600 2024-03-20
Unclassified MEDIUM 5.3
CVE-2024-1119

The Order Tip for WooCommerce plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the export_tips_…

Mitigation only
Fix from $1,600 2024-03-20
Error Log Viewer MEDIUM 6.5
CVE-2023-6821

The Error Log Viewer by BestWebSoft WordPress plugin before 1.1.3 is affected by a Directory Listing issue, allowing users to read and download PHP l…

Fix: 1.1.3+
Fix from $1,600 2024-03-18