Vulnerability index

Browse CVEs

15 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Postx HIGH 8.8
CVE-2024-10728EPSS 36%

The Post Grid Gutenberg Blocks and WordPress Blog Plugin – PostX plugin for WordPress is vulnerable to unauthorized plugin installation/activation du…

Fix: 4.1.17+
Fix from $1,950 2024-11-16
Postx MEDIUM 5.4
CVE-2024-50443

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPXPO PostX ultimate-post.This issue affects Po…

Fix: 4.1.13+
Fix from $1,600 2024-10-28
Postx MEDIUM 6.8
CVE-2024-4305

The Post Grid Gutenberg Blocks and WordPress Blog Plugin WordPress plugin before 4.1.0 does not validate and escape some of its block options before…

Fix: 4.1.0+
Fix from $1,600 2024-06-17
Postx HIGH 8.8
CVE-2024-31246

Missing Authorization vulnerability in WPXPO PostX ultimate-post allows Exploiting Incorrectly Configured Access Control Security Levels.This issue a…

Fix: 3.2.4+
Fix from $1,950 2024-06-09
Wholesalex CRITICAL 9.8
CVE-2024-30542

Improper Privilege Management vulnerability in Wholesale WholesaleX allows Privilege Escalation.This issue affects WholesaleX: from n/a through 1.3.2.

Fix: 1.3.3+
Fix from $2,300 2024-05-17
Postx MEDIUM 5.4
CVE-2024-3239

The Post Grid Gutenberg Blocks and WordPress Blog Plugin WordPress plugin before 4.0.2 does not validate and escape some of its block options before…

Fix: 4.0.2+
Fix from $1,600 2024-05-14
Wholesalex CRITICAL 9.8
CVE-2024-30224

Deserialization of Untrusted Data vulnerability in Wholesale Team WholesaleX.This issue affects WholesaleX: from n/a through 1.3.2.

Fix: 1.3.3+
Fix from $2,300 2024-03-28
Wholesalex HIGH 8.8
CVE-2024-30234

Missing Authorization vulnerability in Wholesale Team WholesaleX.This issue affects WholesaleX: from n/a through 1.3.1.

Fix: 1.3.2+
Fix from $1,950 2024-03-26
Wholesalex MEDIUM 6.5
CVE-2024-30233

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Wholesale Team WholesaleX.This issue affects WholesaleX: from n/a through…

Fix: 1.3.2+
Fix from $1,600 2024-03-26
Wowstore CRITICAL 9.8
CVE-2024-23512

Deserialization of Untrusted Data vulnerability in wpxpo ProductX – WooCommerce Builder & Gutenberg WooCommerce Blocks.This issue affects ProductX – …

Fix: 3.1.5+
Fix from $2,300 2024-02-12
Postx MEDIUM 6.1
CVE-2023-3992

The PostX WordPress plugin before 3.0.6 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-…

Fix: 3.0.6+
Fix from $1,600 2023-08-30
Postx MEDIUM 6.1
CVE-2023-36385

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in wpxpo PostX – Gutenberg Post Grid Blocks plugin <= 2.9.9 versions.

Fix: after 2.9.9
Fix from $1,600 2023-07-25
Postx Gutenberg Blocks For Post Grid MEDIUM 5.4
CVE-2021-24660

The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10, with Saved Templates Addon enabled, allows users with a role as low as Con…

Fix: 2.4.10+
Fix from $1,600 2021-09-27
Postx Gutenberg Blocks For Post Grid MEDIUM 6.5
CVE-2021-24652

The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10 performs incorrect checks before allowing any logged in user to perform som…

Fix: 2.4.10+
Fix from $1,600 2021-09-27
Postx Gutenberg Blocks For Post Grid MEDIUM 5.4
CVE-2021-24659

The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10 allows users with a role as low as Contributor to perform Stored Cross-Site…

Fix: 2.4.10+
Fix from $1,600 2021-09-27