Vulnerability index

Browse CVEs

12 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2024-49290 Cross-Site Request Forgery (CSRF) vulnerability in Gora Tech LLC Cooked Pro allows Cross Site Request Forgery.This issue affects Cooked Pro: from n/a… Cooked 1.8.0+ Fix from $1,9502024-10-20 MEDIUM 5.4 CVE-2024-41816 Cooked is a recipe plugin for WordPress. The Cooked plugin for WordPress is vulnerable to Persistent Cross-Site Scripting (XSS) via the ‘[cooked-time… Cooked 1.8.1+ Fix from $1,6002024-08-05 MEDIUM 5.4 CVE-2024-39682 Cooked is a recipe plugin for WordPress. The Cooked plugin for WordPress is vulnerable to HTML Injection in versions up to, and including, 1.7.15.4 d… Cooked 1.8.0+ Fix from $1,6002024-07-18 HIGH 8.8 CVE-2024-39678 Cooked is a recipe plugin for WordPress. The Cooked plugin is vulnerable to Cross-Site Request Forgery (CSRF) in versions up to, and including, 1.7.1… Cooked 1.8.0+ Fix from $1,9502024-07-18 HIGH 8.8 CVE-2024-39679 Cooked is a recipe plugin for WordPress. The Cooked plugin for WordPress is vulnerable to Cross-Site Request Forgery (CSRF) in versions up to, and in… Cooked 1.8.0+ Fix from $1,9502024-07-18 HIGH 8.8 CVE-2024-39680 Cooked is a recipe plugin for WordPress. The Cooked plugin for WordPress is vulnerable to Cross-Site Request Forgery (CSRF) in versions up to, and in… Cooked 1.8.0+ Fix from $1,9502024-07-18 HIGH 8.8 CVE-2024-39681 Cooked is a recipe plugin for WordPress. The Cooked plugin for WordPress is vulnerable to Cross-Site Request Forgery (CSRF) in versions up to, and in… Cooked 1.8.0+ Fix from $1,9502024-07-18 MEDIUM 5.4 CVE-2024-37308 The Cooked Pro recipe plugin for WordPress is vulnerable to Persistent Cross-Site Scripting (XSS) via the `_recipe_settings[post_title]` parameter in… Cooked 1.8.0+ Fix from $1,6002024-06-13 HIGH 7.5 CVE-2022-36399 Exposure of Sensitive Information to an Unauthorized Actor vulnerability in BoxyStudio Booked - Appointment Booking for WordPress | Calendars.This is… Booked 2.4.4+ Fix from $1,9502023-12-28 MEDIUM 5.4 CVE-2023-44477 Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Boxy Studio Cooked plugin <= 1.7.13 versions. Cooked after 1.7.13 Fix from $1,6002023-10-02 CRITICAL 9.8 CVE-2022-3900EPSS 19% The Cooked Pro WordPress plugin before 1.7.5.7 does not properly validate or sanitize the recipe_args parameter before unserializing it in the cooked… Cooked 1.7.5.7+ Fix from $2,3002022-12-12 MEDIUM 6.1 CVE-2021-24233 The Cooked Pro WordPress plugin before 1.7.5.6 was affected by unauthenticated reflected Cross-Site Scripting issues, due to improper sanitisation of… Cooked 1.7.5.6+ Fix from $1,6002021-04-22