Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Floating Chat Widget MEDIUM 5.4
CVE-2025-1450

The Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button, WhatsApp – Chaty plugin for WordPress i…

Fix: 3.3.6+
Fix from $1,600 2025-02-27
Folders MEDIUM 5.4
CVE-2024-7317

The Folders – Unlimited Folders to Organize Media Library Folder, Pages, Posts, File Manager plugin for WordPress is vulnerable to Stored Cross-Site …

Fix: 3.0.4+
Fix from $1,600 2024-08-06
Folders HIGH 7.2
CVE-2023-40204

Unrestricted Upload of File with Dangerous Type vulnerability in Premio Folders – Unlimited Folders to Organize Media Library Folder, Pages, Posts, F…

Fix: after 2.9.2
Fix from $1,950 2023-12-20
Mystickymenu MEDIUM 5.4
CVE-2023-5509

The myStickymenu WordPress plugin before 2.6.5 does not adequately authorize some ajax calls, allowing any logged-in user to perform the actions.

Fix: 2.6.5+
Fix from $1,600 2023-11-20
Chaty MEDIUM 6.1
CVE-2023-25019

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Premio Chaty plugin <= 3.0.9 versions

Fix: after 3.0.9
Fix from $1,600 2023-08-30
My Sticky Elements HIGH 7.2
CVE-2023-0487

The My Sticky Elements WordPress plugin before 2.0.9 does not properly sanitise and escape a parameter before using it in a SQL statement when deleti…

Fix: 2.0.9+
Fix from $1,950 2023-02-27
Chaty HIGH 7.2
CVE-2022-3858

The Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line, WeChat, Email, SMS, Call Button WordPress plugin before 3.0.3 does not properly sa…

Fix: 3.0.3+
Fix from $1,950 2022-12-05
Mystickyelements MEDIUM 5.4
CVE-2022-0148

The All-in-one Floating Contact Form, Call, Chat, and 50+ Social Icon Tabs WordPress plugin before 2.0.4 was vulnerable to reflected XSS on the my-st…

Fix: 2.0.4+
Fix from $1,600 2022-02-07
Chaty MEDIUM 6.1
CVE-2021-25016

The Chaty WordPress plugin before 2.8.3 and Chaty Pro WordPress plugin before 2.8.2 do not sanitise and escape the search parameter before outputting…

Fix: 2.8.2 / 2.8.3+
Fix from $1,600 2022-01-03