Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

The Events Calendar MEDIUM 6.5
CVE-2024-1295

The events-calendar-pro WordPress plugin before 6.4.0.1, The Events Calendar WordPress plugin before 6.4.0.1 does not prevent users with at least the…

Fix: 6.4.0.1+
Fix from $1,600 2024-06-14
Gigpress HIGH 8.8
CVE-2023-0381

The GigPress WordPress plugin through 2.3.28 does not validate and escape some of its shortcode attributes before using them in SQL statement/s, whic…

Fix: after 2.3.28
Fix from $1,950 2023-02-27
Gigpress MEDIUM 5.4
CVE-2022-4759

The GigPress WordPress plugin before 2.3.28 does not validate and escape some of its shortcode attributes before outputting them back in a page/post …

Fix: 2.3.28+
Fix from $1,600 2023-02-13
Panel Builder MEDIUM 6.1
CVE-2020-36626

A vulnerability classified as critical has been found in Modern Tribe Panel Builder Plugin. Affected is the function add_post_content_filtered_to_sea…

Fix: 2020-05-08+
Fix from $1,600 2022-12-27
Event Tickets MEDIUM 6.1
CVE-2021-25028

The Event Tickets WordPress plugin before 5.2.2 does not validate the tribe_tickets_redirect_to parameter before redirecting the user to the given va…

Fix: 5.2.2+
Fix from $1,600 2022-01-24
Gigpress HIGH 7.2
CVE-2015-9353

The gigpress plugin before 2.3.11 for WordPress has SQL injection in the admin area, a different vulnerability than CVE-2015-4066.

Fix: 2.3.11+
Fix from $1,950 2019-08-28
Gigpress MEDIUM 6.5
CVE-2015-4066

Multiple SQL injection vulnerabilities in admin/handlers.php in the GigPress plugin before 2.3.9 for WordPress allow remote authenticated users to ex…

Fix: after 2.3.8
Fix from $1,600 2015-05-27