Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2025-3780 The WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible plugin for WordPress is vulnerable to unauthorized m… Frontend Manager For Woocommerce Along With Bookings Subscription Listings Compatible 6.7.17+ Fix from $1,6002025-07-09 HIGH 8.8 CVE-2024-8290 The WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible plugin for WordPress is vulnerable to Insecure Direc… Frontend Manager For Woocommerce Along With Bookings Subscription Listings Compatible 6.7.13+ Fix from $1,9502024-09-25 MEDIUM 6.1 CVE-2024-44009 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WC Lovers WCFM Marketplace wc-multivendor-marke… Wcfm Marketplace after 3.6.11 Fix from $1,6002024-09-17 MEDIUM 5.4 CVE-2023-4960 The WCFM Marketplace plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'wcfm_stores' shortcode in versions up to, and including, … Wcfm Marketplace after 3.6.2 Fix from $1,6002024-01-11 MEDIUM 5.4 CVE-2023-2275 The WooCommerce Multivendor Marketplace – REST API plugin for WordPress is vulnerable to unauthorized access of data and addition of data due to a mi… Woocommerce Multivendor Marketplace after 1.5.3 Fix from $1,6002023-06-09 CRITICAL 9.8 CVE-2023-2276 The WCFM Membership – WooCommerce Memberships for Multivendor Marketplace plugin for WordPress is vulnerable to Insecure Direct Object References in … Wcfm Membership after 2.10.7 Fix from $2,3002023-05-20 CRITICAL 9.8 CVE-2022-4939 THe WCFM Membership plugin for WordPress is vulnerable to privilege escalation in versions up to, and including 2.10.0, due to a missing capability c… Wcfm Membership 2.10.1+ Fix from $2,3002023-04-05 HIGH 8.8 CVE-2022-4941 The WCFM Membership plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.9.10 due to missing nonce ch… Wcfm Membership 2.10.0+ Fix from $1,9502023-04-05 MEDIUM 6.5 CVE-2022-4940 The WCFM Membership plugin for WordPress is vulnerable to unauthorized modification and access of data in versions up to, and including, 2.10.0 due t… Wcfm Membership 2.10.11+ Fix from $1,6002023-04-05 HIGH 8.8 CVE-2022-4935 The WCFM Marketplace plugin for WordPress is vulnerable to unauthorized modification and access of data in versions up to, and including, 3.4.11 due … Wcfm Marketplace 3.4.12+ Fix from $1,9502023-04-05 HIGH 8.8 CVE-2022-4936 The WCFM Marketplace plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.4.11 due to missing nonce c… Wcfm Marketplace 3.4.12+ Fix from $1,9502023-04-05 HIGH 8.8 CVE-2022-4937 The WCFM Frontend Manager plugin for WordPress is vulnerable to unauthorized modification and access of data in versions up to, and including, 6.6.0 … Frontend Manager For Woocommerce Along With Bookings Subscription Listings Compatible 6.6.1+ Fix from $1,9502023-04-05 HIGH 8.8 CVE-2022-4938 The WCFM Frontend Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 6.6.0 due to missing non… Frontend Manager For Woocommerce Along With Bookings Subscription Listings Compatible after 6.5.13 Fix from $1,9502023-04-05 CRITICAL 9.8 CVE-2021-24849EPSS 8% The wcfm_ajax_controller AJAX action of the WCFM Marketplace WordPress plugin before 3.4.12, available to unauthenticated and authenticated user, doe… Frontend Manager For Woocommerce Along With Bookings Subscription Listings Compatible 3.4.12+ Fix from $2,3002021-12-21 HIGH 8.8 CVE-2021-24835 The WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible WordPress plugin before 6.5.12, when used in combina… Frontend Manager For Woocommerce Along With Bookings Subscription Listings Compatible 6.5.12+ Fix from $1,9502021-11-08