Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CVE-2023-2171
The BadgeOS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in versions up to, and including, 3.7.1.6…
Fix: after 3.7.1.6
Fix from $1,600
2023-08-31
CVE-2022-41987
Cross-Site Request Forgery (CSRF) vulnerability in LearningTimes BadgeOS plugin <= 3.7.1.6 versions.
Fix: after 3.7.1.6
Fix from $1,950
2023-05-25
CVE-2022-2958
The BadgeOS WordPress plugin before 3.7.1.3 does not sanitise and escape parameters before using them in SQL statements via AJAX actions available to…
Fix: 3.7.1.3+
Fix from $1,950
2022-09-19
CVE-2022-0817EPSS 12%
The BadgeOS WordPress plugin through 3.7.0 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action, leading to…
Fix: after 3.7.0
Fix from $2,300
2022-05-09