Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Recurring Paypal Donations MEDIUM 5.4
CVE-2024-35676

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in wpecommerce Recurring PayPal Donations a…

Fix: 1.8+
Fix from $1,600 2024-06-08
Wp Ecommerce HIGH 7.5
CVE-2024-1514

The WP eCommerce plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'cart_contents' parameter in all versions up to, and in…

Fix: after 3.15.1
Fix from $1,950 2024-02-28
Easy Wp Smtp CRITICAL 9.8
CVE-2019-25141

The Easy WP SMTP plugin for WordPress is vulnerable to authorization bypass in versions up to, and including, 1.3.9. This is due to missing capabilit…

Fix: after 1.3.9
Fix from $2,300 2023-06-07
Easy Wp Smtp HIGH 8.8
CVE-2022-42699

Auth. Remote Code Execution vulnerability in Easy WP SMTP plugin <= 1.5.1 on WordPress.

Fix: after 1.5.1
Fix from $1,950 2022-12-06
Easy Wp Smtp HIGH 8.1
CVE-2022-45829

Auth. Path Traversal vulnerability in Easy WP SMTP plugin <= 1.5.1 at WordPress.

Fix: after 1.5.1
Fix from $1,950 2022-12-06
Easy Wp Smtp MEDIUM 6.5
CVE-2022-45833

Auth. Path Traversal vulnerability in Easy WP SMTP plugin <= 1.5.1 on WordPress.

Fix: after 1.5.1
Fix from $1,600 2022-12-06
Easy Wp Smtp HIGH 7.2
CVE-2022-3334

The Easy WP SMTP WordPress plugin before 1.5.0 unserialises the content of an imported file, which could lead to PHP object injection issue when an a…

Fix: 1.5.0+
Fix from $1,950 2022-10-31
Easy Wp Smtp HIGH 7.5
CVE-2020-35234EPSS 65%

The easy-wp-smtp plugin before 1.4.4 for WordPress allows Administrator account takeover, as exploited in the wild in December 2020. If an attacker c…

Fix: 1.4.4+
Fix from $1,950 2020-12-14
Easy Wp Smtp MEDIUM 6.1
CVE-2017-7723

XSS exists in Easy WP SMTP (before 1.2.5), a WordPress Plugin, via the e-mail subject or body.

Fix: after 1.2.4
Fix from $1,600 2017-04-24