Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 5.3
CVE-2025-22302
Missing Authorization vulnerability in WP Grids WP Wand ai-content-generation allows Exploiting Incorrectly Configured Access Control Security Levels…
Mitigation only
MEDIUM 6.4
CVE-2024-56294
Missing Authorization vulnerability in POSIMYTH Nexter Blocks the-plus-addons-for-block-editor allows Exploiting Incorrectly Configured Access Contro…
Mitigation only
HIGH 8.8
CVE-2024-56276
Missing Authorization vulnerability in Syed Balkhi Contact Form by WPForms wpforms-lite allows Exploiting Incorrectly Configured Access Control Secur…
Wpforms
1.9.2.3+
MEDIUM 5.3
CVE-2024-51651
Missing Authorization vulnerability in Imran Tauqeer CubeWP Forms cubewp-forms allows Exploiting Incorrectly Configured Access Control Security Level…
Mitigation only
CRITICAL 9.8
CVE-2024-56273
Missing Authorization vulnerability in wpvividplugins WPvivid Backup and Migration wpvivid-backuprestore allows Accessing Functionality Not Properly …
Migration\, Backup\, Staging
0.9.107+
HIGH 8.8
CVE-2024-12202
The Croma Music plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capabi…
Mitigation only
MEDIUM 5.3
CVE-2024-10866
The Export Import Menus plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the dsp_export_import_…
Mitigation only
HIGH 8.8
CVE-2024-11725
The SMS Alert Order Notifications – WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege es…
Sms Alert Order Notifications
3.7.7+
MEDIUM 5.3
CVE-2024-9697
The Social Rocket – Social Sharing Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check o…
Social Rocket
after 1.3.4
HIGH 8.6
CVE-2024-12535
The Host PHP Info plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check when including the 'phpinfo' fu…
Mitigation only
MEDIUM 5.3
CVE-2024-12158
The Popup – MailChimp, GetResponse and ActiveCampaign Intergrations plugin for WordPress is vulnerable to unauthorized loss of data due to a missing …
Mitigation only
MEDIUM 5.3
CVE-2024-12176
The WordLift – AI powered SEO – Schema plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'wl_config_…
Mitigation only
MEDIUM 6.5
CVE-2024-11496
The Infility Global plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the infility_global_…
Infility Global
2.9.9+
MEDIUM 5.3
CVE-2024-12559
The ClickDesigns plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'clickdesigns_add_a…
Mitigation only
MEDIUM 5.3
CVE-2024-55408
An improper access control vulnerability in the AsusSAIO.sys driver may lead to the misuse of software functionality utilizing the driver when crafte…
Mitigation only
MEDIUM 5.9
CVE-2025-22385
An issue was discovered in Optimizely Configured Commerce before 5.2.2408. For newly created accounts, the Commerce B2B application does not require …
Configured Commerce
5.2.2408+
MEDIUM 5.4
CVE-2023-23672
Missing Authorization vulnerability in Liquid Web / StellarWP GiveWP.This issue affects GiveWP: from n/a through 2.25.1.
Givewp
2.25.2+
MEDIUM 5.4
CVE-2022-45811
Missing Authorization vulnerability in WeyHan Ng Post Teaser.This issue affects Post Teaser: from n/a through 4.1.5.
No fix yet
MEDIUM 5.3
CVE-2022-47601
Missing Authorization vulnerability in JoomUnited WP Table Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue…
Mitigation only
MEDIUM 5.3
CVE-2023-48739
Missing Authorization vulnerability in Porto Theme Porto Theme - Functionality porto-functionality allows Exploiting Incorrectly Configured Access Co…
Mitigation only
HIGH 7.1
CVE-2023-48758
Missing Authorization vulnerability in Crocoblock JetEngine jet-engine allows Exploiting Incorrectly Configured Access Control Security Levels.This i…
Mitigation only
MEDIUM 6.5
CVE-2023-40327
Missing Authorization vulnerability in Putler / Storeapps Putler Connector for WooCommerce.This issue affects Putler Connector for WooCommerce: from …
Mitigation only
MEDIUM 6.5
CVE-2023-45633
Missing Authorization vulnerability in IDX IMPress Listings allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affect…
Mitigation only
CRITICAL 9.8
CVE-2022-45830
Missing Authorization vulnerability in Analytify.This issue affects Analytify: from n/a through 4.2.3.
Analytify Google Analytics Dashboard
4.3.0+
MEDIUM 5.4
CVE-2023-32240
Missing Authorization vulnerability in Xtemos WoodMart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Woo…
Mitigation only
HIGH 8.8
CVE-2024-56266
Missing Authorization vulnerability in sonaar MP3 Audio Player for Music, Radio & Podcast by Sonaar mp3-music-player-by-sonaar allows Accessing Funct…
Mp3 Audio Player For Music\, Radio \& Podcast
5.9+
MEDIUM 5.4
CVE-2024-56253
Missing Authorization vulnerability in supsystic Data Tables Generator by Supsystic data-tables-generator-by-supsystic allows Exploiting Incorrectly …
Mitigation only
MEDIUM 5.3
CVE-2024-56238
Missing Authorization vulnerability in QuantumCloud Floating Action Buttons floating-action-buttons allows Accessing Functionality Not Properly Const…
Mitigation only
MEDIUM 5.4
CVE-2024-56244
Missing Authorization vulnerability in WP Royal Ashe Extra ashe-extra allows Exploiting Incorrectly Configured Access Control Security Levels.This is…
Mitigation only
HIGH 7.5
CVE-2023-47648
Missing Authorization vulnerability in Spider Themes EazyDocs eazydocs allows Exploiting Incorrectly Configured Access Control Security Levels.This i…
Mitigation only