Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Infinitewp Client MEDIUM 5.3
CVE-2024-10585

The InfiniteWP Client plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.13.0 via the 'historyID' parameter…

Fix: 1.13.1+
Fix from $1,600 2025-01-08
Backup And Staging By Wp Time Capsule CRITICAL 9.8
CVE-2024-8856EPSS 94%

The Backup and Staging by WP Time Capsule plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the the…

Fix: 1.22.22+
Fix from $2,300 2024-11-16
Infinitewp Client MEDIUM 5.9
CVE-2023-6565

The InfiniteWP Client plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.12.3 via the multi…

Fix: 1.12.3.1+
Fix from $1,600 2024-02-29
Infinitewp Client MEDIUM 5.3
CVE-2023-2916EPSS 24%

The InfiniteWP Client plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 1.11.1 via the 'admin_no…

Fix: 1.12.1+
Fix from $1,600 2023-08-15
Infinitewp Client CRITICAL 9.8
CVE-2016-15004

A vulnerability was found in InfiniteWP Client Plugin 1.5.1.3/1.6.0. It has been declared as critical. Affected by this vulnerability is an unknown f…

No fix yet
Fix from $2,300 2022-07-23
Backup And Staging By Wp Time Capsule MEDIUM 6.1
CVE-2021-25035

The Backup and Staging by WP Time Capsule WordPress plugin before 1.22.7 does not sanitise and escape the error parameter before outputting it back i…

Fix: 1.22.7+
Fix from $1,600 2022-01-24
Infinitewp Client CRITICAL 9.8
CVE-2020-8772EPSS 88%

The InfiniteWP Client plugin before 1.9.4.5 for WordPress has a missing authorization check in iwp_mmb_set_request in init.php. Any attacker who know…

Fix: 1.9.4.5+
Fix from $2,300 2020-02-06