Vulnerability index

Browse CVEs

19 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2025-3888 The Jupiter X Core plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File inclusion in all versions up to, and including, 4.8… Jupiter X Core after 4.8.12 Fix from $1,6002025-05-17 HIGH 8.1 CVE-2025-2105 The Jupiter X Core plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 4.8.11 via deserialization of unt… Jupiter X Core 4.8.12+ Fix from $1,9502025-04-26 HIGH 8.8 CVE-2025-0366 The Jupiter X Core plugin for WordPress is vulnerable to Local File Inclusion to Remote Code Execution in all versions up to, and including, 4.8.7 vi… Jupiter X Core 4.8.8+ Fix from $1,9502025-02-01 MEDIUM 6.5 CVE-2025-0365 The Jupiter X Core plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 4.8.7 via the inline SVG feature. … Jupiter X Core 4.8.8+ Fix from $1,6002025-02-01 MEDIUM 5.3 CVE-2024-12316 The Jupiter X Core plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the export_popup_action() f… Jupiter X Core 4.8.6+ Fix from $1,6002025-01-07 HIGH 8.8 CVE-2023-38385 Missing Authorization vulnerability in Artbees JupiterX Core allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affec… Jupiter X Core 3.3.5+ Fix from $1,9502024-12-13 CRITICAL 9.8 CVE-2024-7772 The Jupiter X Core plugin for WordPress is vulnerable to arbitrary file uploads due to a mishandled file type validation in the 'validate' function i… Jupiter X Core 4.6.6+ Fix from $2,3002024-09-26 CRITICAL 9.8 CVE-2024-7781 The Jupiter X Core plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 4.7.5. This is due to improper a… Jupiter X Core 4.7.8+ Fix from $2,3002024-09-26 CRITICAL 9.8 CVE-2023-38389 Incorrect Authorization vulnerability in Artbees JupiterX Core allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Jup… Jupiter X Core after 3.3.8 Fix from $2,3002024-06-21 HIGH 8.8 CVE-2023-38394 Missing Authorization vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core: from 3.0.0 through 3.3.0. Jupiter X Core 3.3.5+ Fix from $1,9502024-06-19 MEDIUM 5.4 CVE-2024-4608 The SellKit – Funnel builder and checkout optimizer for WooCommerce to sell more, faster plugin for WordPress is vulnerable to Stored Cross-Site Scri… Sellkit 2.0.0+ Fix from $1,6002024-06-06 HIGH 8.8 CVE-2023-32110 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in artbees JupiterX allows PHP Local File Inclusion.This… Jupiterx 3.1.0+ Fix from $1,9502024-05-17 CRITICAL 9.8 CVE-2023-38388 Unrestricted Upload of File with Dangerous Type vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core: from n/a through 3.3.5. Jupiter X Core 3.3.8+ Fix from $2,3002024-03-26 HIGH 7.5 CVE-2023-3813 The Jupiter X Core plugin for WordPress is vulnerable to arbitrary file downloads in versions up to, and including, 4.6.6. This makes it possible for… Jupiter X Core after 2.5.0 Fix from $1,9502023-07-21 HIGH 8.8 CVE-2022-1654 Jupiter Theme <= 6.10.1 and JupiterX Core Plugin <= 2.0.7 allow any authenticated attacker, including a subscriber or customer-level attacker, to gai… Jupiter after 6.10.1 Fix from $1,9502022-06-13 HIGH 8.8 CVE-2022-1657 Vulnerable versions of the Jupiter (<= 6.10.1) and JupiterX (<= 2.0.6) Themes allow logged-in users, including subscriber-level users, to perform Pat… Jupiter after 6.10.1 Fix from $1,9502022-06-13 HIGH 7.3 CVE-2022-1659 Vulnerable versions of the JupiterX Core (<= 2.0.6) plugin register an AJAX action jupiterx_conditional_manager which can be used to call any functio… Jupiterx after 2.0.6 Fix from $1,9502022-06-13 MEDIUM 5.4 CVE-2022-1658 Vulnerable versions of the Jupiter Theme (<= 6.10.1) allow arbitrary plugin deletion by any authenticated user, including users with the subscriber r… Jupiter after 6.10.1 Fix from $1,6002022-06-13 MEDIUM 5.4 CVE-2022-1656 Vulnerable versions of the JupiterX Theme (<=2.0.6) allow any logged-in user, including subscriber-level users, to access any of the functions regist… Jupiter X Core after 2.0.6 Fix from $1,6002022-06-13