Vulnerability index

Browse CVEs

46 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Armember HIGH 8.8
CVE-2022-47425

Missing Authorization vulnerability in Repute Infosystems ARMember allows Exploiting Incorrectly Configured Access Control Security Levels.This issue…

Fix: 3.4.11+
Fix from $1,950 2025-12-09
Arforms MEDIUM 5.4
CVE-2024-10504

The Contact Form, Survey, Quiz & Popup Form Builder WordPress plugin before 1.7.1 does not sanitise and escape some parameters when outputting them …

Fix: 1.7.1+
Fix from $1,600 2025-05-15
Bookingpress HIGH 7.6
CVE-2025-31910

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in reputeinfosystems BookingPress bookingpress-app…

Fix: 1.1.38+
Fix from $1,950 2025-04-01
Bookingpress MEDIUM 5.4
CVE-2025-24732

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in reputeinfosystems BookingPress bookingpress-app…

Fix: 1.1.26+
Fix from $1,600 2025-01-24
Arforms Form Builder MEDIUM 6.1
CVE-2024-54223

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in reputeinfosystems ARForms Form Builder arforms-form-bu…

Fix: 1.7.2+
Fix from $1,600 2024-12-09
Arforms MEDIUM 5.4
CVE-2024-54217

Missing Authorization vulnerability in reputeinfosystems ARForms arforms.This issue affects ARForms: from n/a through <= 6.4.1.

Fix: after 6.4.1
Fix from $1,600 2024-12-09
Arforms HIGH 7.7
CVE-2024-54216

Path Traversal: '.../...//' vulnerability in reputeinfosystems ARForms allows Path Traversal. This issue affects ARForms: from n/a before 7.0.2.

Fix: after 6.4.1
Fix from $1,950 2024-12-06
Armember HIGH 8.8
CVE-2022-47424

Cross-Site Request Forgery (CSRF) vulnerability in Repute InfoSystems ARMember, Repute InfoSystems ARMember Premium allows Cross-Site Request Forgery…

Fix: 4.0.6 / 6.7.1+
Fix from $1,950 2024-11-19
Bookingpress MEDIUM 6.5
CVE-2024-10540

The Appointment Booking Calendar Plugin and Scheduling Plugin – BookingPress plugin for WordPress is vulnerable to SQL Injection via the 'service' pa…

Fix: 1.1.17+
Fix from $1,600 2024-11-02
Arforms Form Builder MEDIUM 6.1
CVE-2024-37920

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Repute InfoSystems ARForms Form Builder …

Fix: 1.6.8+
Fix from $1,600 2024-07-20
Bookingpress HIGH 8.8
CVE-2024-6467

The BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin plugin for WordPress is vulnerable to Arbitrary File Read to Arbi…

Fix: 1.1.6+
Fix from $1,950 2024-07-17
Bookingpress HIGH 8.8
CVE-2024-6660

The BookingPress – Appointment Booking Calendar Plugin and Online Scheduling Plugin plugin for WordPress is vulnerable to unauthorized modification o…

Fix: 1.1.6+
Fix from $1,950 2024-07-17
Arforms MEDIUM 6.3
CVE-2024-0427

The ARForms - Premium WordPress Form Builder Plugin WordPress plugin before 6.4.1 does not properly escape user-controlled input when it is reflected…

Fix: 6.4.1+
Fix from $1,600 2024-06-12
Bookingpress MEDIUM 5.3
CVE-2024-34799

Missing Authorization vulnerability in Repute Infosystems BookingPress.This issue affects BookingPress: from n/a through 1.0.82.

Fix: 1.0.83+
Fix from $1,600 2024-06-11
Arforms HIGH 8.8
CVE-2024-32705

Missing Authorization vulnerability in reputeinfosystems ARForms arforms.This issue affects ARForms: from n/a through <= 6.4.

Fix: 6.4.1+
Fix from $1,950 2024-06-09
Arforms HIGH 8.1
CVE-2024-32703

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in reputeinfosystems ARForms arforms.This issue affects …

Fix: 6.4.1+
Fix from $1,950 2024-06-09
Arforms MEDIUM 6.5
CVE-2024-32704

Missing Authorization vulnerability in reputeinfosystems ARForms arforms.This issue affects ARForms: from n/a through <= 6.4.

Fix: 6.4.1+
Fix from $1,600 2024-06-09
Arforms CRITICAL 9.8
CVE-2024-4620

The ARForms - Premium WordPress Form Builder Plugin WordPress plugin before 6.6 allows unauthenticated users to modify uploaded files in such a way t…

Fix: 6.6+
Fix from $2,300 2024-06-07
Armember HIGH 8.8
CVE-2023-47837

Improper Privilege Management vulnerability in Repute Infosystems ARMember allows Privilege Escalation.This issue affects ARMember: from n/a through …

Fix: 4.0.11+
Fix from $1,950 2024-06-04
Armember HIGH 8.8
CVE-2023-51356

Improper Privilege Management vulnerability in Repute Infosystems ARMember allows Privilege Escalation.This issue affects ARMember: from n/a through …

Fix: 4.0.11+
Fix from $1,950 2024-05-17
Arforms Form Builder HIGH 8.0
CVE-2024-31270

Missing Authorization vulnerability in Repute InfoSystems ARForms Form Builder.This issue affects ARForms Form Builder: from n/a through 1.6.1.

Fix: 1.6.2+
Fix from $1,950 2024-05-08
Bookingpress CRITICAL 9.8
CVE-2023-51405

Improper Authentication vulnerability in Repute Infosystems BookingPress allows Accessing Functionality Not Properly Constrained by ACLs.This issue a…

Fix: 1.0.75+
Fix from $2,300 2024-04-24
Arforms MEDIUM 6.1
CVE-2024-32702

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in reputeinfosystems ARForms arforms.This issue af…

Fix: 6.4.1+
Fix from $1,600 2024-04-24
Arforms HIGH 8.8
CVE-2024-32706

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in reputeinfosystems ARForms arforms.This issue af…

Fix: 6.4.1+
Fix from $1,950 2024-04-24
Armember CRITICAL 9.1
CVE-2024-32948

Missing Authorization vulnerability in Repute Infosystems ARMember.This issue affects ARMember: from n/a through 4.0.28.

Fix: 4.0.29+
Fix from $2,300 2024-04-24
Arforms Form Builder MEDIUM 6.3
CVE-2024-31272

Cross-Site Request Forgery (CSRF) vulnerability in Repute InfoSystems ARForms Form Builder.This issue affects ARForms Form Builder: from n/a through …

Fix: 1.6.2+
Fix from $1,600 2024-04-12
Bookingpress MEDIUM 5.4
CVE-2024-31296

Authorization Bypass Through User-Controlled Key vulnerability in Repute Infosystems BookingPress.This issue affects BookingPress: from n/a through 1…

Fix: 1.0.82+
Fix from $1,600 2024-04-07
Bookingpress HIGH 7.2
CVE-2024-3022

The BookingPress plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient filename validation in the 'bookingpress_process_up…

Fix: after 1.0.87
Fix from $1,950 2024-04-04
Armember CRITICAL 9.8
CVE-2024-30223

Deserialization of Untrusted Data vulnerability in Repute Infosystems ARMember.This issue affects ARMember: from n/a through 4.0.26.

Fix: 4.0.27+
Fix from $2,300 2024-03-28
Armember HIGH 8.8
CVE-2024-30222

Deserialization of Untrusted Data vulnerability in Repute Infosystems ARMember.This issue affects ARMember: from n/a through 4.0.26.

Fix: 4.0.27+
Fix from $1,950 2024-03-28