Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6649
Adobe 6383
Ibm 6266
Cisco 5746
Debian 3919
Apache 2864
Mozilla 2857
Redhat 2581
MEDIUM 5.3
CVE-2025-14757
The Cost Calculator Builder plugin for WordPress is vulnerable to Unauthenticated Payment Status Bypass in all versions up to, and including, 3.6.9 o…
Cost Calculator Builder
3.6.10+
MEDIUM 5.4
CVE-2025-2808
The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Phone Number param…
Motors Car Dealer\, Classifieds \& Listing
1.4.64+
HIGH 8.8
CVE-2025-2807
The Motors – Car Dealership & Classified Listings Plugin plugin for WordPress is vulnerable to arbitrary plugin installations due to a missing capabi…
Motors Car Dealer\, Classifieds \& Listing
1.4.65+
HIGH 8.8
CVE-2025-1653
The Directory Listings WordPress plugin – uListing plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 2…
Ulisting
after 2.1.7
HIGH 8.8
CVE-2025-1657
The Directory Listings WordPress plugin – uListing plugin for WordPress is vulnerable to unauthorized modification of data and PHP Object Injection d…
Ulisting
after 2.1.7
MEDIUM 5.4
CVE-2024-10970
The The Motors – Car Dealer, Classifieds & Listing plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and inc…
Motors Car Dealer\, Classifieds \& Listing
1.4.44+
HIGH 8.8
CVE-2024-37093
Cross-Site Request Forgery (CSRF) vulnerability in Stylemix MasterStudy LMS masterstudy-lms-learning-management-system allows Cross Site Request Forg…
Masterstudy Lms
3.2.2+
MEDIUM 5.4
CVE-2024-10892
The Cost Calculator Builder WordPress plugin before 3.2.43 does not have CSRF checks in some AJAX actions, which could allow attackers to make logged…
Cost Calculator Builder
3.2.43+
CRITICAL 9.8
CVE-2024-37094
Missing Authorization vulnerability in StylemixThemes MasterStudy LMS allows Exploiting Incorrectly Configured Access Control Security Levels.
This …
Masterstudy Lms
3.2.13+
HIGH 7.2
CVE-2024-8379
The Cost Calculator Builder WordPress plugin before 3.2.29 does not properly sanitise and escape a parameter before using it in a SQL statement, lead…
Cost Calculator Builder
3.2.29+
MEDIUM 5.3
CVE-2024-6010
The Cost Calculator Builder PRO plugin for WordPress is vulnerable to price manipulation in all versions up to, and including, 3.2.1. This is due to …
Cost Calculator Builder
after 3.1.96
CRITICAL 9.8
CVE-2024-43144
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Cost Calculator Builder allows S…
Cost Calculator Builder
3.2.16+
HIGH 8.8
CVE-2024-5973
The MasterStudy LMS WordPress Plugin WordPress plugin before 3.3.24 does not prevent students from creating instructor accounts, which could be used…
Masterstudy Lms
3.3.24+
HIGH 8.8
CVE-2024-37090
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Masterstudy Elementor Widgets, S…
Consulting Elementor Widgets
after 1.3.0
MEDIUM 5.3
CVE-2024-5545
The Motors – Car Dealer, Classifieds & Listing plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability ch…
Motors Car Dealer\, Classifieds \& Listing
1.4.11+
HIGH 8.8
CVE-2024-37092
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in StylemixThemes Consulting Elementor Widgets allows PH…
Consulting Elementor Widgets
1.3.1+
HIGH 8.8
CVE-2024-37091
Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in StylemixThemes Consulting Elementor Widgets, Sty…
Consulting Elementor Widgets
1.3.1+
CRITICAL 9.8
CVE-2024-37089
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in StylemixThemes Consulting Elementor Widgets allows PH…
Consulting Elementor Widgets
1.3.1+
CRITICAL 9.8
CVE-2024-35677
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in StylemixThemes MegaMenu allows PHP Local File Inclusi…
Mega Menu
2.3.13+
MEDIUM 5.4
CVE-2024-3942
The MasterStudy LMS WordPress Plugin – for Online Courses and Education plugin for WordPress is vulnerable to unauthorized access, modification, and …
Masterstudy Lms
3.3.9+
CRITICAL 9.8
CVE-2024-3136EPSS 5%
The MasterStudy LMS plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.3.3 via the 'template' paramet…
Masterstudy Lms
3.3.4+
CRITICAL 9.8
CVE-2024-2409
The MasterStudy LMS plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.3.1. This is due to insufficie…
Masterstudy Lms
3.3.2+
CRITICAL 9.8
CVE-2024-2411
The MasterStudy LMS plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.3.0 via the 'modal' parameter.…
Masterstudy Lms
3.3.1+
HIGH 7.5
CVE-2024-2106
The MasterStudy LMS WordPress Plugin – for Online Courses and Education plugin for WordPress is vulnerable to Information Exposure in versions up to,…
Masterstudy Lms
3.2.11+
CRITICAL 9.8
CVE-2024-1512EPSS 78%
The MasterStudy LMS WordPress Plugin – for Online Courses and Education plugin for WordPress is vulnerable to union based SQL Injection via the 'user…
Masterstudy Lms
after 3.2.5
HIGH 7.2
CVE-2023-50852
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Booking Calendar | Appointment B…
Bookit
2.4.4+
HIGH 7.5
CVE-2023-46207
Server-Side Request Forgery (SSRF) vulnerability in StylemixThemes Motors – Car Dealer, Classifieds & Listing.This issue affects Motors – Car Dealer,…
Motors Car Dealer\, Classifieds \& Listing
after 1.4.6
MEDIUM 6.1
CVE-2023-46208
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in StylemixThemes Motors – Car Dealer, Classifieds & Listing plugin <= 1.4.6 versions.
Motors Car Dealer\, Classifieds \& Listing
after 1.4.6
HIGH 7.5
CVE-2023-4278
The MasterStudy LMS WordPress Plugin WordPress plugin before 3.0.18 does not have proper checks in place during registration allowing anyone to regis…
Masterstudy Lms
3.0.18+
CRITICAL 9.8
CVE-2023-2834
The BookIt plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.3.7. This is due to insufficient verificat…
Bookit
after 2.3.7