Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CVE-2024-7423
The Stream plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.0.1. This is due to missing or in…
Fix: 4.0.2+
Fix from $1,950
2024-09-13
CVE-2022-43450
Authorization Bypass Through User-Controlled Key vulnerability in XWP Stream.This issue affects Stream: from n/a through 3.9.2.
Fix: after 3.9.2
Fix from $1,600
2023-12-19
CVE-2022-43490
Cross-Site Request Forgery (CSRF) vulnerability in XWP Stream plugin <= 3.9.2 versions.
Fix: after 3.9.2
Fix from $1,950
2023-05-25
CVE-2022-4384
The Stream WordPress plugin before 3.9.2 does not prevent users with little privileges on the site (like subscribers) from using its alert creation f…
Fix: 3.9.2+
Fix from $1,600
2023-02-06
CVE-2021-24772
The Stream WordPress plugin before 3.8.2 does not sanitise and validate the order GET parameter from the Stream Records admin dashboard before using …
Fix: 3.8.2+
Fix from $1,950
2021-11-17