Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.5
CVE-2024-13758
The CP Contact Form with PayPal plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3.52. This i…
Cp Contact Form
1.3.53+
HIGH 8.8
CVE-2023-41732
Cross-Site Request Forgery (CSRF) vulnerability in CodePeople CP Blocks plugin <= 1.0.20 versions.
Cp Blocks
1.0.21+
MEDIUM 6.5
CVE-2022-3427
The Corner Ad plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.0.56. This is due to missing or in…
Corner Ad
after 1.0.56
HIGH 7.8
CVE-2022-4034
The Appointment Hour Booking Plugin for WordPress is vulnerable to CSV Injection in versions up to, and including, 1.3.72. This makes it possible for…
Appointment Hour Booking
after 1.3.72
MEDIUM 6.1
CVE-2022-4035
The Appointment Hour Booking plugin for WordPress is vulnerable to iFrame Injection via the ‘email’ or general field parameters in versions up to, an…
Appointment Hour Booking
after 1.3.72
MEDIUM 5.3
CVE-2022-4036
The Appointment Hour Booking plugin for WordPress is vulnerable to CAPTCHA bypass in versions up to, and including, 1.3.72. This is due to the use of…
Appointment Hour Booking
after 1.3.72
HIGH 8.8
CVE-2022-41692
Missing Authorization vulnerability in Appointment Hour Booking plugin <= 1.3.71 on WordPress.
Appointment Hour Booking
1.3.72+
CRITICAL 9.8
CVE-2022-1692EPSS 11%
The CP Image Store with Slideshow WordPress plugin before 1.0.68 does not sanitise and escape the ordering_by query parameter before using it in a SQ…
Cp Image Store With Slideshow
1.0.68+
MEDIUM 5.4
CVE-2021-24712
The Appointment Hour Booking WordPress plugin before 1.3.17 does not properly sanitize values used when creating new calendars.
Appointment Hour Booking
1.3.17+
MEDIUM 6.1
CVE-2021-24498
The Calendar Event Multi View WordPress plugin before 1.4.01 does not sanitise or escape the 'start' and 'end' GET parameters before outputting them …
Calendar Event Multi View
1.4.01+
MEDIUM 6.1
CVE-2017-18579
The corner-ad plugin before 1.0.8 for WordPress has XSS.
Corner Ad
1.0.8+
MEDIUM 6.1
CVE-2019-13505
The Appointment Hour Booking plugin 1.1.44 for WordPress allows XSS via the E-mail field, as demonstrated by email_1.
Appointment Hour Booking
No fix yet