Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Soledad HIGH 7.1
CVE-2024-31367

Missing Authorization vulnerability in PenciDesign Soledad.This issue affects Soledad: from n/a through 8.4.2.

Fix: 8.4.6+
Fix from $1,950 2024-04-09
Soledad MEDIUM 6.5
CVE-2024-31368

Missing Authorization vulnerability in PenciDesign Soledad.This issue affects Soledad: from n/a through 8.4.2.

Fix: 8.4.6+
Fix from $1,600 2024-04-09
Soledad MEDIUM 5.4
CVE-2024-31369

Cross-Site Request Forgery (CSRF) vulnerability in PenciDesign Soledad.This issue affects Soledad: from n/a through 8.4.2.

Fix: 8.4.6+
Fix from $1,600 2024-04-09
Soledad CRITICAL 9.8
CVE-2023-49826

Deserialization of Untrusted Data vulnerability in PenciDesign Soledad – Multipurpose, Newspaper, Blog & WooCommerce WordPress Theme.This issue affec…

Fix: 8.4.2+
Fix from $2,300 2023-12-21
Soledad HIGH 8.1
CVE-2023-49825

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in PenciDesign Soledad – Multipurpose, Newspaper, …

Fix: 8.4.2+
Fix from $1,950 2023-12-20
Soledad MEDIUM 6.1
CVE-2023-49827

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PenciDesign Soledad – Multipurpose, Newspaper, …

Fix: 8.4.2+
Fix from $1,600 2023-12-14
Soledad MEDIUM 5.4
CVE-2022-41788

Auth. (subscriber+) Cross-Site Scripting (XSS) vulnerability in Soledad premium theme <= 8.2.5 on WordPress.

Fix: 8.2.6+
Fix from $1,600 2022-11-18
Soledad MEDIUM 6.1
CVE-2022-3209

The soledad WordPress theme before 8.2.5 does not sanitise the {id,datafilter[type],...} parameters in its penci_more_slist_post_ajax AJAX action, le…

Fix: 8.2.5+
Fix from $1,600 2022-10-10