Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Product Catalog Simple MEDIUM 5.4
CVE-2025-1405

The Product Catalog Simple plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's show_products shortcode in all versions…

Fix: 1.8.0+
Fix from $1,600 2025-02-28
Product Catalog Simple HIGH 7.5
CVE-2023-51687

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in impleCode Product Catalog Simple.This issue affects Product Catalog Simpl…

Fix: 1.7.7+
Fix from $1,950 2023-12-29
Ecommerce Product Catalog HIGH 7.5
CVE-2023-51688

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in impleCode eCommerce Product Catalog Plugin for WordPress.This issue affec…

Fix: 3.3.27+
Fix from $1,950 2023-12-29
Ecommerce Product Catalog MEDIUM 6.5
CVE-2023-5979

The eCommerce Product Catalog Plugin for WordPress plugin before 3.3.26 does not have CSRF checks in some of its admin pages, which could allow attac…

Fix: 3.3.26+
Fix from $1,600 2023-12-04
Ecommerce Product Catalog MEDIUM 5.4
CVE-2023-47839

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in impleCode eCommerce Product Catalog Plugin for …

Fix: after 3.3.26
Fix from $1,600 2023-11-23
Product Catalog Simple MEDIUM 6.1
CVE-2023-29388

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in impleCode Product Catalog Simple plugin <= 1.6.17 versions.

Fix: 1.7.0+
Fix from $1,600 2023-04-07
Reviews Plus MEDIUM 6.5
CVE-2021-24894

The Reviews Plus WordPress plugin before 1.2.14 does not validate the submitted rating, allowing submission of long integer, causing a Denial of Serv…

Fix: 1.2.14+
Fix from $1,600 2021-11-23
Ecommerce Product Catalog MEDIUM 6.1
CVE-2021-24875

The eCommerce Product Catalog Plugin for WordPress plugin before 3.0.39 does not escape the ic-settings-search parameter before outputting it back in…

Fix: 3.0.39+
Fix from $1,600 2021-11-23