Vulnerability index

Browse CVEs

6,923 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
HIGH 7.6 CVE-2023-45658 Missing Authorization vulnerability in POSIMYTH Nexter.This issue affects Nexter: from n/a through 2.0.3. Mitigation only Fix from $1,9502024-06-19 HIGH 8.8 CVE-2023-46146 Missing Authorization vulnerability in Themify Themify Ultra.This issue affects Themify Ultra: from n/a through 7.3.5. Ultra 7.3.6+ Fix from $1,9502024-06-19 HIGH 7.3 CVE-2023-40004EPSS 10% Missing Authorization vulnerability in ServMask All-in-One WP Migration Box Extension, ServMask All-in-One WP Migration OneDrive Extension, ServMask … Mitigation only Fix from $1,9502024-06-19 HIGH 8.2 CVE-2023-40608 Missing Authorization vulnerability in Paid Memberships Pro Paid Memberships Pro CCBill Gateway.This issue affects Paid Memberships Pro CCBill Gatewa… Mitigation only Fix from $1,9502024-06-19 HIGH 8.8 CVE-2023-47788 Missing Authorization vulnerability in Automattic Jetpack.This issue affects Jetpack: from n/a before 12.7. Jetpack 12.7+ Fix from $1,9502024-06-19 HIGH 7.5 CVE-2023-48759 Missing Authorization vulnerability in Crocoblock JetElements For Elementor.This issue affects JetElements For Elementor: from n/a through 2.6.13. Jetelements 2.6.13.1+ Fix from $1,9502024-06-19 CRITICAL 9.8 CVE-2023-48760 Missing Authorization vulnerability in Crocoblock JetElements For Elementor.This issue affects JetElements For Elementor: from n/a through 2.6.13. Jetelements 2.6.13.1+ Fix from $2,3002024-06-19 MEDIUM 6.3 CVE-2023-48761 Missing Authorization vulnerability in Crocoblock JetElements For Elementor.This issue affects JetElements For Elementor: from n/a through 2.6.13. Jetelements 2.6.13.1+ Fix from $1,6002024-06-19 HIGH 8.3 CVE-2023-47771 Missing Authorization vulnerability in ThemePunch OHG Essential Grid.This issue affects Essential Grid: from n/a through 3.0.18. Mitigation only Fix from $1,9502024-06-19 HIGH 8.3 CVE-2023-47783 Missing Authorization vulnerability in Thrive Themes Thrive Theme Builder.This issue affects Thrive Theme Builder: from n/a before 3.24.0. Mitigation only Fix from $1,9502024-06-19 MEDIUM 6.4 CVE-2024-5768 The MIMO Woocommerce Order Tracking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the … Mitigation only Fix from $1,6002024-06-19 MEDIUM 6.3 CVE-2024-4450 The AliExpress Dropshipping with AliNext Lite plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several … Aliexpress Dropshipping With Alinext 3.3.7+ Fix from $1,6002024-06-19 HIGH 8.1 CVE-2024-38506 In JetBrains YouTrack before 2024.2.34646 user without appropriate permissions could enable the auto-attach option for workflows Youtrack 2024.2.34646+ Fix from $1,9502024-06-18 MEDIUM 5.3 CVE-2024-38504 In JetBrains YouTrack before 2024.2.34646 the Guest User Account was enabled for attaching files to articles Youtrack 2024.2.34646+ Fix from $1,6002024-06-18 MEDIUM 5.3 CVE-2024-5541 The Ibtana – WordPress Website Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on t… Ibtana after 1.2.3.3 Fix from $1,6002024-06-18 MEDIUM 6.5 CVE-2024-1634 The Scheduling Plugin – Online Booking for WordPress plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability chec… Scheduling Plugin after 3.5.10 Fix from $1,6002024-06-18 HIGH 8.1 CVE-2023-6696 The Popup Builder – Create highly converting, mobile friendly marketing popups. plugin for WordPress is vulnerable to unauthorized access of function… Popup Builder 4.3.2+ Fix from $1,9502024-06-15 MEDIUM 6.4 CVE-2024-2544 The Popup Builder plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a missing capability check on all A… Popup Builder 4.3.2+ Fix from $1,6002024-06-15 HIGH 8.1 CVE-2024-5685 Users with "User:edit" and "Self:api" permissions can promote or demote themselves or other users by performing changes to the group's memberships vi… Snipe It 6.4.2+ Fix from $1,9502024-06-14 MEDIUM 5.3 CVE-2024-23504 Missing Authorization vulnerability in WPManageNinja LLC Ninja Tables.This issue affects Ninja Tables: from n/a through 5.0.5. Ninja Tables 5.0.6+ Fix from $1,6002024-06-14 MEDIUM 6.5 CVE-2023-51495 Missing Authorization vulnerability in Woo WooCommerce Warranty Requests.This issue affects WooCommerce Warranty Requests: from n/a through 2.2.7. Returns And Warranty Requests 2.3.0+ Fix from $1,6002024-06-14 MEDIUM 5.3 CVE-2023-51496 Missing Authorization vulnerability in Woo WooCommerce Warranty Requests.This issue affects WooCommerce Warranty Requests: from n/a through 2.2.7. Returns And Warranty Requests 2.3.0+ Fix from $1,6002024-06-14 MEDIUM 5.4 CVE-2023-51497 Missing Authorization vulnerability in Woo WooCommerce Ship to Multiple Addresses.This issue affects WooCommerce Ship to Multiple Addresses: from n/a… Shipping Multiple Addresses 3.8.10+ Fix from $1,6002024-06-14 MEDIUM 5.3 CVE-2023-51377 Missing Authorization vulnerability in WPEverest Everest Forms.This issue affects Everest Forms: from n/a through 2.0.3. Everest Forms 2.0.3.1+ Fix from $1,6002024-06-14 HIGH 7.3 CVE-2024-1094 The Timetics- AI-powered Appointment Booking with Visual Seat Plan and ultimate Calendar Scheduling plugin for WordPress is vulnerable to unauthorize… Mitigation only Fix from $1,9502024-06-14 MEDIUM 5.3 CVE-2023-51507 Missing Authorization vulnerability in ExpressTech Quiz And Survey Master.This issue affects Quiz And Survey Master: from n/a through 8.1.16. Quiz And Survey Master 8.1.17+ Fix from $1,6002024-06-14 MEDIUM 5.4 CVE-2023-51516 Missing Authorization vulnerability in Business Directory Team Business Directory Plugin.This issue affects Business Directory Plugin: from n/a throu… Business Directory 6.3.10+ Fix from $1,6002024-06-14 MEDIUM 5.3 CVE-2023-37394 Missing Authorization vulnerability in Deepak anand WP Dummy Content Generator.This issue affects WP Dummy Content Generator: from n/a through 2.3.0. Wp Dummy Content Generator 3.0.0+ Fix from $1,6002024-06-14 CRITICAL 9.8 CVE-2023-36504 Missing Authorization vulnerability in BBS e-Theme BBS e-Popup.This issue affects BBS e-Popup: from n/a through 2.4.5. Bbs E Popup after 2.4.5 Fix from $2,3002024-06-14 MEDIUM 6.3 CVE-2023-36694 Missing Authorization vulnerability in Bryan Lee Kingkong Board.This issue affects Kingkong Board: from n/a through 2.1.0.2. No fix yet Fix from $1,6002024-06-14