Vulnerability index

Browse CVEs

23 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Total Upkeep HIGH 7.5
CVE-2020-36848

The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Sensitive Information Exposure in…

Fix: 1.14.10+
Fix from $1,950 2025-07-12
Total Upkeep HIGH 7.2
CVE-2025-2257

The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Remote Code Execution in all vers…

Fix: 1.17.0+
Fix from $1,950 2025-03-26
Total Upkeep MEDIUM 6.5
CVE-2024-13907

The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Server-Side Request Forgery in al…

Fix: 1.16.9+
Fix from $1,600 2025-02-27
Post And Page Builder MEDIUM 6.5
CVE-2025-0859

The Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plugin for WordPress is vulnerable to Path Traversal in all versions up to, and i…

Fix: 1.27.7+
Fix from $1,600 2025-02-06
Post And Page Builder By Boldgrid Visual Drag And Drop Editor MEDIUM 5.4
CVE-2025-22759

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BoldGrid Post and Page Builder by BoldGrid post…

Fix: 1.27.6+
Fix from $1,600 2025-01-15
W3 Total Cache HIGH 8.5
CVE-2024-12365

The W3 Total Cache plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the is_w3tc_admin_page func…

Fix: 2.8.2+
Fix from $1,950 2025-01-14
W3 Total Cache HIGH 7.5
CVE-2024-12008

The W3 Total Cache plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.8.1 through the publicly expose…

Fix: 2.8.2+
Fix from $1,950 2025-01-14
W3 Total Cache MEDIUM 5.3
CVE-2024-12006

The W3 Total Cache plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on several functions in …

Fix: 2.8.2+
Fix from $1,600 2025-01-14
Total Upkeep HIGH 7.2
CVE-2024-9461

The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Remote Code Execution in all vers…

Fix: 1.16.7+
Fix from $1,950 2024-11-26
W3 Total Cache HIGH 7.5
CVE-2023-5359

The W3 Total Cache plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.7.5 via Google OAuth API …

Fix: 2.7.6+
Fix from $1,950 2024-09-25
Post And Page Builder MEDIUM 5.4
CVE-2024-6848

The Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via file upload…

Fix: 1.26.7+
Fix from $1,600 2024-07-20
Total Upkeep HIGH 7.5
CVE-2024-24869

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in BoldGrid Total Upkeep allows Relative Path Traversal.…

Fix: 1.15.9+
Fix from $1,950 2024-05-17
Post And Page Builder MEDIUM 5.4
CVE-2024-4400

The Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plguin for WordPress is vulnerable to Stored Cross-Site Scripting via an unknown …

Fix: 1.26.5+
Fix from $1,600 2024-05-16
Easy Seo MEDIUM 5.3
CVE-2024-2950

The BoldGrid Easy SEO – Simple and Effective SEO plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.6…

Fix: 1.6.15+
Fix from $1,600 2024-04-06
Post And Page Builder MEDIUM 5.4
CVE-2024-2888

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BoldGrid Post and Page Builder by BoldGrid – Vi…

Fix: 1.26.3+
Fix from $1,600 2024-03-26
Post And Page Builder HIGH 8.8
CVE-2023-25480

Cross-Site Request Forgery (CSRF) vulnerability in BoldGrid Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plugin <= 1.24.1 versions.

Fix: after 1.24.1
Fix from $1,950 2023-10-06
W3 Total Cache MEDIUM 6.1
CVE-2021-24436

The W3 Total Cache WordPress plugin before 2.1.4 was vulnerable to a reflected Cross-Site Scripting (XSS) security vulnerability within the "extensio…

Fix: 2.1.4+
Fix from $1,600 2021-07-19
W3 Total Cache MEDIUM 6.1
CVE-2021-24452

The W3 Total Cache WordPress plugin before 2.1.5 was affected by a reflected Cross-Site Scripting (XSS) issue within the "extension" parameter in the…

Fix: 2.1.5+
Fix from $1,600 2021-07-19
W3 Total Cache HIGH 7.5
CVE-2012-6078

W3 Total Cache before 0.9.2.5 generates hash keys insecurely which allows remote attackers to predict the values of the hashes.

Fix: 0.9.2.5+
Fix from $1,950 2019-11-22
W3 Total Cache HIGH 7.5
CVE-2012-6079

W3 Total Cache before 0.9.2.5 exposes sensitive cached database information which allows remote attackers to download this information via their hash…

Fix: 0.9.2.5+
Fix from $1,950 2019-11-22
W3 Total Cache HIGH 7.5
CVE-2012-6077EPSS 5%

W3 Total Cache before 0.9.2.5 allows remote attackers to retrieve password hash information due to insecure storage of database cache files.

Fix: 0.9.2.5+
Fix from $1,950 2019-11-22
W3 Total Cache HIGH 7.5
CVE-2019-6715EPSS 19%

pub/sns.php in the W3 Total Cache plugin before 0.9.4 for WordPress allows remote attackers to read arbitrary files via the SubscribeURL field in Sub…

Fix: 0.9.4+
Fix from $1,950 2019-04-01
W3 Total Cache MEDIUM 6.8
CVE-2014-9414

The W3 Total Cache plugin before 0.9.4.1 for WordPress does not properly handle empty nonces, which allows remote attackers to conduct cross-site req…

Fix: after 0.9.4
Fix from $1,600 2014-12-24