Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Wp Content Copy Protection \& No Right Click MEDIUM 6.1
CVE-2024-6690

The wccp-pro WordPress plugin before 15.3 contains an open-redirect flaw via the referrer parameter, allowing redirection of users to external sites

Fix: 15.3+
Fix from $1,600 2025-05-15
Wp Content Copy Protection \& No Right Click HIGH 8.8
CVE-2024-49306

Cross-Site Request Forgery (CSRF) vulnerability in wp-buy WP Content Copy Protection & No Right Click wp-content-copy-protector allows Cross Site Req…

Fix: 3.6.1+
Fix from $1,950 2024-10-20
Login As User Or Customer \(user Switching\) CRITICAL 9.8
CVE-2022-4305EPSS 39%

The Login as User or Customer WordPress plugin before 3.3 lacks authorization checks to ensure that users are allowed to log in as another one, which…

Fix: 3.3+
Fix from $2,300 2023-01-23
Wp Content Copy Protection \& No Right Click HIGH 8.8
CVE-2022-23983

Cross-Site Request Forgery (CSRF) vulnerability leading to plugin Settings Update discovered in WP Content Copy Protection & No Right Click WordPress…

Fix: after 3.4.4
Fix from $1,950 2022-02-21
Seo Redirection 301 Redirect Manager HIGH 8.8
CVE-2021-24847

The importFromRedirection AJAX action of the SEO Redirection Plugin – 301 Redirect Manager WordPress plugin before 8.2, available to any authenticate…

Fix: 8.2+
Fix from $1,950 2021-11-17
Visitor Traffic Real Time Statistics HIGH 8.8
CVE-2021-24829

The Visitor Traffic Real Time Statistics WordPress plugin before 3.9 does not validate and escape user input passed to the today_traffic_index AJAX a…

Fix: 3.9+
Fix from $1,950 2021-11-08
Visitor Traffic Real Time Statistics HIGH 8.8
CVE-2021-24193

Low privileged users can use the AJAX action 'cp_plugins_do_button_job_later_callback' in the Visitor Traffic Real Time Statistics WordPress plugin b…

Fix: 2.12+
Fix from $1,950 2021-05-14
Login Protection Limit Failed Login Attempts HIGH 8.8
CVE-2021-24194

Low privileged users can use the AJAX action 'cp_plugins_do_button_job_later_callback' in the Login Protection - Limit Failed Login Attempts WordPres…

Fix: 2.9+
Fix from $1,950 2021-05-14
Login As User Or Customer \(user Switching\) HIGH 8.8
CVE-2021-24195

Low privileged users can use the AJAX action 'cp_plugins_do_button_job_later_callback' in the Login as User or Customer (User Switching) WordPress pl…

Fix: 1.8+
Fix from $1,950 2021-05-14
Wp Content Copy Protection \& No Right Click HIGH 8.8
CVE-2021-24188

Low privileged users can use the AJAX action 'cp_plugins_do_button_job_later_callback' in the WP Content Copy Protection & No Right Click WordPress p…

Fix: 3.1.5+
Fix from $1,950 2021-05-14
Captchinoo HIGH 8.8
CVE-2021-24189

Low privileged users can use the AJAX action 'cp_plugins_do_button_job_later_callback' in the Captchinoo, Google recaptcha for admin login page WordP…

Fix: 2.4+
Fix from $1,950 2021-05-14
Conditional Marketing Mailer HIGH 8.8
CVE-2021-24190

Low privileged users can use the AJAX action 'cp_plugins_do_button_job_later_callback' in the WooCommerce Conditional Marketing Mailer WordPress plug…

Fix: 1.5.2+
Fix from $1,950 2021-05-14
Visitor Traffic Real Time Statistics HIGH 8.8
CVE-2019-15831

The visitors-traffic-real-time-statistics plugin before 1.12 for WordPress has CSRF in the settings page.

Fix: 1.12+
Fix from $1,950 2019-08-30
Visitor Traffic Real Time Statistics HIGH 8.8
CVE-2019-15832

The visitors-traffic-real-time-statistics plugin before 1.13 for WordPress has CSRF.

Fix: 1.13+
Fix from $1,950 2019-08-30