Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Kiwi Social Share MEDIUM 5.3
CVE-2024-3228

The Social Sharing Plugin – Kiwi plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.1.7 via the 'kiwi…

Fix: 2.1.8+
Fix from $1,600 2024-07-09
Subscribe To Comments Reloaded HIGH 7.5
CVE-2024-31249

Insertion of Sensitive Information into Log File vulnerability in WPKube Subscribe To Comments Reloaded.This issue affects Subscribe To Comments Relo…

Fix: 240119+
Fix from $1,950 2024-04-10
Authors List MEDIUM 6.1
CVE-2023-37981

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in WPKube Authors List plugin <= 2.0.2 versions.

Fix: 2.0.3+
Fix from $1,600 2023-07-27
Kiwi Social Share CRITICAL 9.8
CVE-2021-4362

The Kiwi Social Share plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the kiwi_social_share_get_optio…

No fix yet
Fix from $2,300 2023-06-07
Subscribe To Comments Reloaded MEDIUM 5.4
CVE-2022-29414

Multiple (13x) Cross-Site Request Forgery (CSRF) vulnerabilities in WPKube's Subscribe To Comments Reloaded plugin <= 211130 on WordPress allows atta…

Fix: after 211130
Fix from $1,600 2022-04-29
About Author Box MEDIUM 5.4
CVE-2021-24745

The About Author Box WordPress plugin before 1.0.2 does not sanitise and escape the Social Profiles field values before outputting them in attributes…

Fix: 1.0.2+
Fix from $1,600 2021-11-29
Cool Tag Cloud MEDIUM 5.4
CVE-2021-24682

The Cool Tag Cloud WordPress plugin before 2.26 does not escape the style attribute of the cool_tag_cloud shortcode, which could allow users with a r…

Fix: 2.26+
Fix from $1,600 2021-11-01