Cat (Patchstack Alliance)
39 kredili kayıt · son 12 ayda 0 · 0 tanesi CISA KEV’de
Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.
Kredili kayıtlar
Araştırmacılar| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
21İzleyin | CVE-2022-47601İstismar yok | WordPress WP Table Manager plugin <= 3.5.2 - Broken Access Controljoomunited · wp table manager · CWE-862 | Orta5,3 | — | %0,4 | 2 Oca 2025 |
17İzleyin | CVE-2023-39994İstismar yok | WordPress ARMember Premium plugin <= 5.9.2 - Broken Access Controlreputeinfosystems · armember · CWE-862 | Orta4,3 | — | %0,3 | 2 Oca 2025 |
21İzleyin | CVE-2023-39996İstismar yok | WordPress Accordion and Accordion Slider plugin <= 1.2.4 - Broken Access Controlwp onlinesupport, essential plugin · accordion and accordion slider · CWE-862 | Orta5,3 | — | %0,5 | 13 Ara 2024 |
17İzleyin | CVE-2023-39995İstismar yok | WordPress Portfolio and Projects plugin <= 1.3.7 - Broken Access Control vulnerabilitywp onlinesupport, essential plugin · portfolio and projects · CWE-862 | Orta4,3 | — | %0,5 | 13 Ara 2024 |
21İzleyin | CVE-2023-36519İstismar yok | WordPress SW Product Bundles plugin <= 2.0.15 - Broken Access Control vulnerabilitywpthemego · sw product bundles · CWE-862 | Orta5,4 | — | %0,6 | 13 Ara 2024 |
17İzleyin | CVE-2023-36518İstismar yok | WordPress Post Hit Counter plugin <= 1.3.2 - Broken Access Controlhugh lashbrooke · post hit counter · CWE-862 | Orta4,3 | — | %0,5 | 13 Ara 2024 |
21İzleyin | CVE-2022-47182İstismar yok | WordPress APIExperts Square for WooCommerce plugin <= 4.4.1 - Broken Access Controlwpexpertsio · apiexperts square for woocommerce · CWE-862 | Orta5,3 | — | %0,5 | 13 Ara 2024 |
21İzleyin | CVE-2022-46846İstismar yok | WordPress Trending/Popular Post Slider and Widget plugin <= 1.5.7 - Broken Access Control vulnerabilitywp onlinesupport, essential plugin · trending/popular post slider and widget · CWE-862 | Orta5,3 | — | %0,5 | 13 Ara 2024 |
17İzleyin | CVE-2022-46811İstismar yok | WordPress ALD Dropshipping and Fulfillment for AliExpress and WooCommerce plugin <= 1.0.21 - Broken Access Control + CSRFvillatheme(villatheme.com) · ald – dropshipping and fulfillment for aliexpress and woocommerce · CWE-862 | Orta4,3 | — | %0,5 | 13 Ara 2024 |
17İzleyin | CVE-2022-46807İstismar yok | WordPress Stock Sync for WooCommerce plugin <= 2.3.2 - Broken Access Controllauri karisola / wp trio · stock sync for woocommerce · CWE-862 | Orta4,3 | — | %0,5 | 13 Ara 2024 |
21İzleyin | CVE-2023-30488İstismar yok | WordPress Featured Post Creative plugin <= 1.2.7 - Broken Access Control vulnerabilitywp onlinesupport, essential plugin · featured post creative · CWE-862 | Orta5,3 | — | %0,4 | 9 Ara 2024 |
21İzleyin | CVE-2023-25703İstismar yok | WordPress Meta slider and carousel with lightbox plugin <= 1.6.2 - Broken Access Control vulnerabilitywp onlinesupport, essential plugin · meta slider and carousel with lightbox · CWE-862 | Orta5,3 | — | %0,5 | 9 Ara 2024 |
21İzleyin | CVE-2023-25060İstismar yok | WordPress Album and Image Gallery plus Lightbox plugin <= 1.6.2 - Broken Access Control vulnerabilitywp onlinesupport, essential plugin · album and image gallery plus lightbox · CWE-862 | Orta5,3 | — | %0,6 | 9 Ara 2024 |
21İzleyin | CVE-2023-23868İstismar yok | WordPress Cost of Goods for WooCommerce plugin <= 2.8.6 - Broken Access Control vulnerabilitywpfactory · cost of goods for woocommerce · CWE-862 | Orta5,4 | — | %0,6 | 9 Ara 2024 |
35İzleyin | CVE-2022-47181İstismar yok | WordPress Email Templates Plugin <= 1.4.2 is vulnerable to Cross Site Request Forgery (CSRF)wpexperts · email templates customizer and designer · CWE-352 | Yüksek8,8 | — | %0,3 | 7 Kas 2023 |
21İzleyin | CVE-2022-45821İstismar yok | WordPress NOO Timetable Plugin <= 2.1.3 is vulnerable to Cross Site Scripting (XSS)nootheme · noo timetable · CWE-79 | Orta5,4 | — | %0,4 | 8 Ağu 2023 |
19İzleyin | CVE-2022-47421İstismar yok | WordPress ARMember (free) and ARMember (premium) plugins - vulnerable to Auth. Stored Cross Site Scripting (XSS)armemberplugin · armember · CWE-79 | Orta4,8 | — | %0,4 | 18 Tem 2023 |
35İzleyin | CVE-2022-46857İstismar yok | WordPress SiteAlert (Formerly WP Health) Plugin <= 1.9.7 is vulnerable to Cross Site Request Forgery (CSRF)sitealert · sitealert · CWE-352 | Yüksek8,8 | — | %0,3 | 18 Tem 2023 |
35İzleyin | CVE-2022-45828İstismar yok | WordPress NOO Timetable Plugin <= 2.1.3 is vulnerable to Cross Site Request Forgery (CSRF)nootheme · noo timetable · CWE-352 | Yüksek8,8 | — | %0,3 | 18 Tem 2023 |
35İzleyin | CVE-2022-45823İstismar yok | WordPress Video Contest WordPress Plugin Plugin <= 3.2 is vulnerable to Cross Site Request Forgery (CSRF)video contest wordpress project · video contest wordpress · CWE-352 | Yüksek8,8 | — | %0,3 | 11 Tem 2023 |
19İzleyin | CVE-2022-45827İstismar yok | WordPress Video Contest WordPress Plugin Plugin <= 3.2 is vulnerable to Cross Site Scripting (XSS)galleryplugins · video contest · CWE-79 | Orta4,8 | — | %0,4 | 12 Haz 2023 |
35İzleyin | CVE-2022-47144İstismar yok | WordPress Mediamatic – Media Library Folders Plugin <= 2.8.1 is vulnerable to Cross Site Request Forgery (CSRF)frenify · mediamatic · CWE-352 | Yüksek8,8 | — | %0,2 | 25 May 2023 |
35İzleyin | CVE-2022-46856İstismar yok | WordPress Woocommerce Product Designer Plugin <= 4.3.3 is vulnerable to Cross Site Request Forgery (CSRF)orion · woocommerce products designer · CWE-352 | Yüksek8,8 | — | %0,3 | 25 May 2023 |
35İzleyin | CVE-2022-46810İstismar yok | WordPress Thank You Page Customizer for WooCommerce – Increase Your Sales Plugin <= 1.0.13 is vulnerable to Cross Site Request Forgery (CSRF)villatheme · woocommerce thank you page customizer · CWE-352 | Yüksek8,8 | — | %0,2 | 25 May 2023 |
35İzleyin | CVE-2022-47177İstismar yok | WordPress WP EasyPay Plugin <= 4.1 is vulnerable to Cross Site Request Forgery (CSRF)wpeasypay · wp easypay · CWE-352 | Yüksek8,8 | — | %0,3 | 25 May 2023 |
- CVE-2022-4760121İzleyin
WordPress WP Table Manager plugin <= 3.5.2 - Broken Access Control
OrtaCVSS 5,3İstismar yokEPSS %0joomunited · wp table manager2 Oca 2025
- CVE-2023-3999417İzleyin
WordPress ARMember Premium plugin <= 5.9.2 - Broken Access Control
OrtaCVSS 4,3İstismar yokEPSS %0reputeinfosystems · armember2 Oca 2025
- CVE-2023-3999621İzleyin
WordPress Accordion and Accordion Slider plugin <= 1.2.4 - Broken Access Control
OrtaCVSS 5,3İstismar yokEPSS %1wp onlinesupport, essential plugin · accordion and accordion slider13 Ara 2024
- CVE-2023-3999517İzleyin
WordPress Portfolio and Projects plugin <= 1.3.7 - Broken Access Control vulnerability
OrtaCVSS 4,3İstismar yokEPSS %0wp onlinesupport, essential plugin · portfolio and projects13 Ara 2024
- CVE-2023-3651921İzleyin
WordPress SW Product Bundles plugin <= 2.0.15 - Broken Access Control vulnerability
OrtaCVSS 5,4İstismar yokEPSS %1wpthemego · sw product bundles13 Ara 2024
- CVE-2023-3651817İzleyin
WordPress Post Hit Counter plugin <= 1.3.2 - Broken Access Control
OrtaCVSS 4,3İstismar yokEPSS %0hugh lashbrooke · post hit counter13 Ara 2024
- CVE-2022-4718221İzleyin
WordPress APIExperts Square for WooCommerce plugin <= 4.4.1 - Broken Access Control
OrtaCVSS 5,3İstismar yokEPSS %1wpexpertsio · apiexperts square for woocommerce13 Ara 2024
- CVE-2022-4684621İzleyin
WordPress Trending/Popular Post Slider and Widget plugin <= 1.5.7 - Broken Access Control vulnerability
OrtaCVSS 5,3İstismar yokEPSS %1wp onlinesupport, essential plugin · trending/popular post slider and widget13 Ara 2024
- CVE-2022-4681117İzleyin
WordPress ALD Dropshipping and Fulfillment for AliExpress and WooCommerce plugin <= 1.0.21 - Broken Access Control + CSRF
OrtaCVSS 4,3İstismar yokEPSS %1villatheme(villatheme.com) · ald – dropshipping and fulfillment for aliexpress and woocommerce13 Ara 2024
- CVE-2022-4680717İzleyin
WordPress Stock Sync for WooCommerce plugin <= 2.3.2 - Broken Access Control
OrtaCVSS 4,3İstismar yokEPSS %1lauri karisola / wp trio · stock sync for woocommerce13 Ara 2024
- CVE-2023-3048821İzleyin
WordPress Featured Post Creative plugin <= 1.2.7 - Broken Access Control vulnerability
OrtaCVSS 5,3İstismar yokEPSS %0wp onlinesupport, essential plugin · featured post creative9 Ara 2024
- CVE-2023-2570321İzleyin
WordPress Meta slider and carousel with lightbox plugin <= 1.6.2 - Broken Access Control vulnerability
OrtaCVSS 5,3İstismar yokEPSS %1wp onlinesupport, essential plugin · meta slider and carousel with lightbox9 Ara 2024
- CVE-2023-2506021İzleyin
WordPress Album and Image Gallery plus Lightbox plugin <= 1.6.2 - Broken Access Control vulnerability
OrtaCVSS 5,3İstismar yokEPSS %1wp onlinesupport, essential plugin · album and image gallery plus lightbox9 Ara 2024
- CVE-2023-2386821İzleyin
WordPress Cost of Goods for WooCommerce plugin <= 2.8.6 - Broken Access Control vulnerability
OrtaCVSS 5,4İstismar yokEPSS %1wpfactory · cost of goods for woocommerce9 Ara 2024
- CVE-2022-4718135İzleyin
WordPress Email Templates Plugin <= 1.4.2 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0wpexperts · email templates customizer and designer7 Kas 2023
- CVE-2022-4582121İzleyin
WordPress NOO Timetable Plugin <= 2.1.3 is vulnerable to Cross Site Scripting (XSS)
OrtaCVSS 5,4İstismar yokEPSS %0nootheme · noo timetable8 Ağu 2023
- CVE-2022-4742119İzleyin
WordPress ARMember (free) and ARMember (premium) plugins - vulnerable to Auth. Stored Cross Site Scripting (XSS)
OrtaCVSS 4,8İstismar yokEPSS %0armemberplugin · armember18 Tem 2023
- CVE-2022-4685735İzleyin
WordPress SiteAlert (Formerly WP Health) Plugin <= 1.9.7 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0sitealert · sitealert18 Tem 2023
- CVE-2022-4582835İzleyin
WordPress NOO Timetable Plugin <= 2.1.3 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0nootheme · noo timetable18 Tem 2023
- CVE-2022-4582335İzleyin
WordPress Video Contest WordPress Plugin Plugin <= 3.2 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0video contest wordpress project · video contest wordpress11 Tem 2023
- CVE-2022-4582719İzleyin
WordPress Video Contest WordPress Plugin Plugin <= 3.2 is vulnerable to Cross Site Scripting (XSS)
OrtaCVSS 4,8İstismar yokEPSS %0galleryplugins · video contest12 Haz 2023
- CVE-2022-4714435İzleyin
WordPress Mediamatic – Media Library Folders Plugin <= 2.8.1 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0frenify · mediamatic25 May 2023
- CVE-2022-4685635İzleyin
WordPress Woocommerce Product Designer Plugin <= 4.3.3 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0orion · woocommerce products designer25 May 2023
- CVE-2022-4681035İzleyin
WordPress Thank You Page Customizer for WooCommerce – Increase Your Sales Plugin <= 1.0.13 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0villatheme · woocommerce thank you page customizer25 May 2023
- CVE-2022-4717735İzleyin
WordPress WP EasyPay Plugin <= 4.1 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0wpeasypay · wp easypay25 May 2023