Vulnerability index

Browse CVEs

11 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.8 CVE-2024-3901 The Genesis Blocks WordPress plugin through 3.1.3 does not properly escape attributes provided to some of its custom blocks, making it possible for u… Genesis Blocks 3.1.4+ Fix from $1,6002025-05-15 MEDIUM 6.1 CVE-2024-45429 Cross-site scripting vulnerability exists in Advanced Custom Fields versions 6.3.5 and earlier and Advanced Custom Fields Pro versions 6.3.5 and earl… Advanced Custom Fields after 6.3.5 Fix from $1,6002024-09-04 MEDIUM 5.4 CVE-2024-3563 The Genesis Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Sharing block in all versions up to, and includ… Genesis Blocks 3.1.4+ Fix from $1,6002024-07-09 MEDIUM 6.8 CVE-2024-2761 The Genesis Blocks WordPress plugin before 3.1.3 does not properly escape data input provided to some of its blocks, allowing using with at least con… Genesis Blocks 3.1.3+ Fix from $1,6002024-04-19 HIGH 8.8 CVE-2023-6933EPSS 68% The Better Search Replace plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.4.4 via deserialization … Better Search Replace 1.4.5+ Fix from $1,9502024-02-05 MEDIUM 5.3 CVE-2022-1563 The WPGraphQL WooCommerce WordPress plugin before 0.12.4 does not prevent unauthenticated attackers from enumerating a shop's coupon codes and values… Wpgraphql after 0.12.3 Fix from $1,6002024-01-16 MEDIUM 6.5 CVE-2023-23684 Server-Side Request Forgery (SSRF) vulnerability in WPGraphQL.This issue affects WPGraphQL: from n/a through 1.14.5. Wpgraphql after 1.14.5 Fix from $1,6002023-11-13 HIGH 8.8 CVE-2023-24421 Cross-Site Request Forgery (CSRF) vulnerability in WP Engine PHP Compatibility Checker plugin <= 1.5.2 versions. Php Compatibility Checker 1.6.0+ Fix from $1,9502023-07-11 CRITICAL 9.8 CVE-2019-9879EPSS 47% The WPGraphQL 0.2.3 plugin for WordPress allows remote attackers to register a new user with admin privileges, whenever new user registrations are al… Wpgraphql No fix yet Fix from $2,3002019-06-10 CRITICAL 9.1 CVE-2019-9880EPSS 35% An issue was discovered in the WPGraphQL 0.2.3 plugin for WordPress. By querying the 'users' RootQuery, it is possible, for an unauthenticated attack… Wpgraphql No fix yet Fix from $2,3002019-06-10 MEDIUM 5.3 CVE-2019-9881EPSS 19% The createComment mutation in the WPGraphQL 0.2.3 plugin for WordPress allows unauthenticated users to post comments on any article, even when 'allow… Wpgraphql No fix yet Fix from $1,6002019-06-10