Vulnerability index

Browse CVEs

24 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2025-63035 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VibeThemes WPLMS wplms_plugin allows DOM-Based … Wordpress Learning Management System after 1.9.9.5.4 Fix from $1,6002025-12-09 HIGH 7.1 CVE-2025-53420 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VibeThemes WPLMS wplms_plugin allows Reflected … Wordpress Learning Management System after 1.9.9.8 Fix from $1,9502025-10-22 HIGH 7.5 CVE-2025-49925 Missing Authorization vulnerability in VibeThemes WPLMS wplms_plugin allows Accessing Functionality Not Properly Constrained by ACLs.This issue affec… Wordpress Learning Management System 1.9.9.8+ Fix from $1,9502025-10-22 CRITICAL 9.8 CVE-2025-58668 Missing Authorization vulnerability in VibeThemes WPLMS wplms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue aff… Wordpress Learning Management System 4.971+ Fix from $2,3002025-09-22 HIGH 8.8 CVE-2015-10139 The WPLMS theme for WordPress is vulnerable to Privilege Escalation in versions 1.5.2 to 1.8.4.1 via the 'wp_ajax_import_data' AJAX action. This make… Wordpress Learning Management System 1.8.9+ Fix from $1,9502025-07-19 CRITICAL 9.8 CVE-2024-56043 Incorrect Privilege Assignment vulnerability in VibeThemes WPLMS wplms_plugin allows Privilege Escalation.This issue affects WPLMS: from n/a through … Wordpress Learning Management System 1.9.9.1+ Fix from $2,3002024-12-31 CRITICAL 9.8 CVE-2024-56044 Authentication Bypass Using an Alternate Path or Channel vulnerability in VibeThemes WPLMS wplms_plugin allows Authentication Bypass.This issue affec… Wordpress Learning Management System 1.9.9.1+ Fix from $2,3002024-12-31 CRITICAL 9.3 CVE-2024-56045 Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS wplms_plugin allows Path Traversal.This issue affects WPLMS: from n/a through < 1.9.9.5. Wordpress Learning Management System 1.9.9.5+ Fix from $2,3002024-12-31 CRITICAL 9.8 CVE-2024-56042 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VibeThemes WPLMS wplms_plugin allows SQL Inject… Wordpress Learning Management System 1.9.9.5.3+ Fix from $2,3002024-12-31 CRITICAL 9.8 CVE-2024-56046 Unrestricted Upload of File with Dangerous Type vulnerability in VibeThemes WPLMS wplms_plugin allows Upload a Web Shell to a Web Server.This issue a… Wordpress Learning Management System 1.9.9.1+ Fix from $2,3002024-12-31 HIGH 8.8 CVE-2024-56053 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VibeThemes WPLMS wplms_plugin allows SQL Inject… Wordpress Learning Management System 1.9.9.5.3+ Fix from $1,9502024-12-18 HIGH 8.8 CVE-2024-56054 Unrestricted Upload of File with Dangerous Type vulnerability in VibeThemes WPLMS wplms_plugin allows Upload a Web Shell to a Web Server.This issue a… Wordpress Learning Management System 1.9.9.5.2+ Fix from $1,9502024-12-18 HIGH 8.8 CVE-2024-56055 Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS wplms_plugin allows Path Traversal.This issue affects WPLMS: from n/a through < 1.9.9.5… Wordpress Learning Management System 1.9.9.5.2+ Fix from $1,9502024-12-18 HIGH 8.8 CVE-2024-56057 Unrestricted Upload of File with Dangerous Type vulnerability in VibeThemes WPLMS wplms_plugin allows Upload a Web Shell to a Web Server.This issue a… Wordpress Learning Management System 1.9.9.5.2+ Fix from $1,9502024-12-18 HIGH 8.8 CVE-2024-56047 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VibeThemes WPLMS wplms_plugin allows SQL Inject… Wordpress Learning Management System 1.9.9.5.3+ Fix from $1,9502024-12-18 HIGH 8.8 CVE-2024-56048 Missing Authorization vulnerability in VibeThemes WPLMS wplms_plugin allows Accessing Functionality Not Properly Constrained by ACLs.This issue affec… Wordpress Learning Management System 1.9.9.1+ Fix from $1,9502024-12-18 HIGH 8.8 CVE-2024-56050 Unrestricted Upload of File with Dangerous Type vulnerability in VibeThemes WPLMS wplms_plugin allows Upload a Web Shell to a Web Server.This issue a… Wordpress Learning Management System 1.9.9.5.3+ Fix from $1,9502024-12-18 HIGH 8.8 CVE-2024-56051 Improper Control of Generation of Code ('Code Injection') vulnerability in VibeThemes WPLMS wplms_plugin allows Code Injection.This issue affects WPL… Wordpress Learning Management System 1.9.9.5+ Fix from $1,9502024-12-18 HIGH 8.8 CVE-2024-56052 Unrestricted Upload of File with Dangerous Type vulnerability in VibeThemes WPLMS wplms_plugin allows Upload a Web Shell to a Web Server.This issue a… Wordpress Learning Management System 1.9.9.5.2+ Fix from $1,9502024-12-18 HIGH 8.5 CVE-2024-56049 Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS wplms_plugin allows Path Traversal.This issue affects WPLMS: from n/a through < 1.9.9.5… Wordpress Learning Management System 1.9.9.5.2+ Fix from $1,9502024-12-18 CRITICAL 9.8 CVE-2024-10470EPSS 34% The WPLMS Learning Management System for WordPress, WordPress LMS theme for WordPress is vulnerable to arbitrary file read and deletion due to insuff… Wordpress Learning Management System 4.963+ Fix from $2,3002024-11-09 HIGH 8.8 CVE-2023-22672 Cross-Site Request Forgery (CSRF) vulnerability in Mr.Vibe vSlider Multi Image Slider for WordPress plugin <= 4.1.2 versions. Vslider after 4.1.2 Fix from $1,9502023-07-17 HIGH 8.8 CVE-2023-36690 Cross-Site Request Forgery (CSRF) vulnerability in VibeThemes WPLMS theme <= 4.900 versions. Wordpress Learning Management System after 4.900 Fix from $1,9502023-07-11 CRITICAL 9.8 CVE-2023-2704 The BP Social Connect plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.5. This is due to insufficient … Bp Social Connect after 1.5 Fix from $2,3002023-05-19