Vulnerability index

Browse CVEs

31 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2023-39997 Missing Authorization vulnerability in supsystic.com Popup by Supsystic allows Exploiting Incorrectly Configured Access Control Security Levels.This … Popup 1.10.20+ Fix from $2,3002024-12-13 CRITICAL 9.8 CVE-2023-51353 Missing Authorization vulnerability in supsystic Popup by Supsystic popup-by-supsystic allows Exploiting Incorrectly Configured Access Control Securi… Popup 1.10.20+ Fix from $2,3002024-12-09 CRITICAL 9.1 CVE-2024-52434 Deserialization of Untrusted Data vulnerability in supsystic Popup by Supsystic popup-by-supsystic allows Command Injection.This issue affects Popup … Popup after 1.10.29 Fix from $2,3002024-11-18 HIGH 8.8 CVE-2024-47330 Missing Authorization vulnerability in Supsystic Slider by Supsystic, Supsystic Social Share Buttons by Supsystic.This issue affects Slider by Supsys… Slider 1.8.7+ Fix from $1,9502024-09-26 MEDIUM 5.4 CVE-2024-5219 The Easy Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's file upload feature in all versions up to, an… Easy Google Maps 1.11.16+ Fix from $1,6002024-07-02 MEDIUM 6.5 CVE-2023-46197 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in supsystic.Com Popup by Supsystic allows Relative Path… Popup 1.10.20+ Fix from $1,6002024-05-17 HIGH 8.8 CVE-2024-31269 Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Easy Google Maps.This issue affects Easy Google Maps: from n/a through 1.11.11. Easy Google Maps 1.11.12+ Fix from $1,9502024-04-12 HIGH 8.8 CVE-2023-5756 The Digital Publications by Supsystic plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.7.6. This … Digital Publications By Supsystic after 1.7.6 Fix from $1,9502023-12-09 HIGH 8.8 CVE-2023-45068 Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Contact Form by Supsystic plugin <= 1.7.27 versions. Contact Form after 1.7.27 Fix from $1,9502023-10-12 CRITICAL 9.8 CVE-2023-3186 The Popup by Supsystic WordPress plugin before 1.10.19 has a prototype pollution vulnerability that could allow an attacker to inject arbitrary prope… Popup 1.10.19+ Fix from $2,3002023-07-17 MEDIUM 5.4 CVE-2023-2526 The Easy Google Maps plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.11.7. This is due to missin… Easy Google Maps after 1.11.7 Fix from $1,6002023-06-09 HIGH 8.8 CVE-2023-33926 Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Easy Google Maps plugin <= 1.11.7 versions. Easy Google Maps 1.11.8+ Fix from $1,9502023-05-28 HIGH 8.8 CVE-2023-22714 Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Coming Soon by Supsystic plugin <= 1.7.10 versions. Coming Soon after 1.7.10 Fix from $1,9502023-05-22 HIGH 8.8 CVE-2023-2528 The Contact Form by Supsystic plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.7.24. This is due … Contact Form after 1.7.24 Fix from $1,9502023-05-17 HIGH 8.8 CVE-2022-47155 Cross-Site Request Forgery (CSRF) vulnerability in Supsystic Slider by Supsystic plugin <= 1.8.5 versions. Slider after 1.8.5 Fix from $1,9502023-03-14 HIGH 8.8 CVE-2022-27235 Multiple Broken Access Control vulnerabilities in Social Share Buttons by Supsystic plugin <= 2.2.3 at WordPress. Social Share Buttons 2.2.4+ Fix from $1,9502022-07-22 HIGH 8.8 CVE-2022-33960 Multiple Authenticated (subscriber or higher user role) SQL Injection (SQLi) vulnerabilities in Social Share Buttons by Supsystic plugin <= 2.2.3 at … Social Share Buttons 2.2.4+ Fix from $1,9502022-07-22 MEDIUM 5.3 CVE-2022-0424 The Popup by Supsystic WordPress plugin before 1.10.9 does not have any authentication and authorisation in an AJAX action, allowing unauthenticated … Popup 1.10.9+ Fix from $1,6002022-05-09 MEDIUM 6.1 CVE-2021-46780 The Easy Google Maps WordPress plugin before 1.9.32 does not escape the tab parameter before outputting it back in an attribute in the admin dashboar… Easy Google Maps 1.9.32+ Fix from $1,6002022-04-25 MEDIUM 6.1 CVE-2021-46782 The Pricing Table by Supsystic WordPress plugin before 1.9.5 does not escape the tab parameter before outputting it back in an attribute in the admin… Price Table 1.9.5+ Fix from $1,6002022-04-25 MEDIUM 6.1 CVE-2021-24274EPSS 18% The Ultimate Maps by Supsystic WordPress plugin before 1.2.5 did not sanitise the tab parameter of its options page before outputting it in an attrib… Ultimate Maps 1.2.5+ Fix from $1,6002021-05-05 MEDIUM 6.1 CVE-2021-24275EPSS 18% The Popup by Supsystic WordPress plugin before 1.10.5 did not sanitise the tab parameter of its options page before outputting it in an attribute, le… Popup 1.10.5+ Fix from $1,6002021-05-05 MEDIUM 6.1 CVE-2021-24276EPSS 16% The Contact Form by Supsystic WordPress plugin before 1.7.15 did not sanitise the tab parameter of its options page before outputting it in an attrib… Contact Form 1.7.15+ Fix from $1,6002021-05-05 HIGH 8.8 CVE-2020-12075 The data-tables-generator-by-supsystic plugin before 1.9.92 for WordPress lacks capability checks for AJAX actions. Data Tables Generator 1.9.92+ Fix from $1,9502020-04-23 HIGH 8.8 CVE-2020-12076 The data-tables-generator-by-supsystic plugin before 1.9.92 for WordPress lacks CSRF nonce checks for AJAX actions. One consequence of this is stored… Data Tables Generator 1.9.92+ Fix from $1,9502020-04-23 HIGH 7.3 CVE-2020-9392 An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. Because there is no permission check on the ImportJSONTa… Pricing Table By Supsystic 1.8.2+ Fix from $1,9502020-03-23 HIGH 8.8 CVE-2020-9394 An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. It allows CSRF. Pricing Table By Supsystic 1.8.2+ Fix from $1,9502020-02-25 MEDIUM 6.1 CVE-2020-9393 An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. It allows XSS. Pricing Table By Supsystic 1.8.2+ Fix from $1,6002020-02-25 HIGH 8.8 CVE-2016-10918 The gallery-by-supsystic plugin before 1.8.6 for WordPress has CSRF. Photo Gallery 1.8.6+ Fix from $1,9502019-08-22 HIGH 8.8 CVE-2016-10915 The popup-by-supsystic plugin before 1.7.9 for WordPress has CSRF. Popup 1.7.9+ Fix from $1,9502019-08-20