Vulnerability index

Browse CVEs

6,923 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Missing AuthorizationCWE-862 × clear
CRITICAL 9.3 CVE-2020-36730 The CMP for WordPress is vulnerable to authorization bypass due to a missing capability check on the cmp_get_post_detail(), niteo_export_csv(), and c… Cmp after 3.8.1 Fix from $2,3002023-06-07 MEDIUM 5.4 CVE-2021-4338 The 404 to 301 plugin for WordPress is vulnerable to authorization bypass due to missing capability checks on the open_redirect & save_redirect funct… 404 To 301 after 3.0.7 Fix from $1,6002023-06-07 MEDIUM 5.3 CVE-2020-36712 The Kali Forms plugin for WordPress is vulnerable to Unauthenticated Arbitrary Post Deletion in versions up to, and including, 2.1.1. This is due to … Kali Forms after 2.1.1 Fix from $1,6002023-06-07 HIGH 7.3 CVE-2020-36716 The WP Activity Log plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the setup_page function in versio… Wp Activity Log after 4.0.1 Fix from $1,9502023-06-07 MEDIUM 5.3 CVE-2019-25139 The Coming Soon Page & Maintenance Mode plugin for WordPress is vulnerable to unauthenticated settings reset in versions up to, and including 1.8.1 d… Coming Soon Page \& Maintenance Mode after 1.8.1 Fix from $1,6002023-06-07 CRITICAL 9.8 CVE-2019-25141 The Easy WP SMTP plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 1.3.9. This is due to missing capabilit… Easy Wp Smtp after 1.3.9 Fix from $2,3002023-06-07 HIGH 8.8 CVE-2019-25142 The Mesmerize & Materialis themes for WordPress are vulnerable to authenticated options change in versions up to, and including,1.6.89 (Mesmerize) an… Materialis 1.0.173 / 1.6.90+ Fix from $1,9502023-06-07 HIGH 7.5 CVE-2020-36696 The Product Input Fields for WooCommerce plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the handle_d… Product Input Fields For Woocommerce 1.2.7+ Fix from $1,9502023-06-07 MEDIUM 6.5 CVE-2020-36697 The WP GDPR plugin for WordPress is vulnerable to authorization bypass due to a missing capability check in versions up to, and including, 2.1.1. Thi… Wp Gdpr after 2.1.1 Fix from $1,6002023-06-07 MEDIUM 6.5 CVE-2023-33477 In Harmonic NSG 9000-6G devices, an authenticated remote user can obtain source code by directly requesting a special path. Nsg 9000 6g Firmware Mitigation only Fix from $1,6002023-06-06 MEDIUM 6.4 CVE-2023-2183 Grafana is an open-source platform for monitoring and observability. The option to send a test alert is not available from the user panel UI for us… Grafana 8.5.26 / 9.2.19+ Fix from $1,6002023-06-06 MEDIUM 6.5 CVE-2023-30948 A security defect in Foundry's Comments functionality resulted in the retrieval of attachments to comments not being gated by additional authorizatio… Foundry Comments 2.249.0+ Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2023-30915 In email service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. Android Mitigation only Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2022-48447 In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privilege… Android No fix yet Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2022-48448 In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privilege… Android Mitigation only Fix from $1,6002023-06-06 HIGH 7.8 CVE-2023-30863 In Connectivity Service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution … Android Mitigation only Fix from $1,9502023-06-06 HIGH 7.8 CVE-2023-30864 In Connectivity Service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution … Android Mitigation only Fix from $1,9502023-06-06 MEDIUM 5.5 CVE-2023-30865 In dialer service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges neede… Android No fix yet Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2023-30866 In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges ne… Android Mitigation only Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2023-30914 In email service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. Android No fix yet Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2022-48440 In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. Android Mitigation only Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2022-48441 In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. Android No fix yet Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2022-48442 In dialer service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privileges. Android Mitigation only Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2022-48443 In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privilege… Android Mitigation only Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2022-48444 In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privilege… Android Mitigation only Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2022-48445 In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privilege… Android Mitigation only Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2022-48446 In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privilege… Android Mitigation only Fix from $1,6002023-06-06 MEDIUM 5.5 CVE-2022-48391 In telephony service, there is a possible missing permission check. This could lead to local denial of service with no additional execution privilege… Android Mitigation only Fix from $1,6002023-06-06 HIGH 7.8 CVE-2022-48392 In dialer service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution privil… Android Mitigation only Fix from $1,9502023-06-06 HIGH 7.8 CVE-2022-48390 In telephony service, there is a possible missing permission check. This could lead to local escalation of privilege with no additional execution pri… Android Mitigation only Fix from $1,9502023-06-06