codexpert records
5 published records for vendor codexpert.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-502 Deserialization of Untrusted Data1
- CWE-862 Missing Authorization1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2024-4371No exploit | CoDesigner WooCommerce Builder for Elementor – Customize Checkout, Shop, Email, Products & More <= 4.4.1 - Unauthenticated PHP Object Injectioncodexpert · codesigner · CWE-502 | Critical9.8 | — | 0.7% | Jun 13, 2024 |
28Monitor | CVE-2022-3131No exploit | Search Logger <= 0.9 - Admin+ SQLicodexpert · search logger · CWE-89 | High7.2 | — | 1.0% | Oct 17, 2022 |
28Monitor | CVE-2024-12321No exploit | WC Affiliate <= 2.3.9 - Reflected XSScodexpert · wc affiliate · CWE-79 | High7.1 | — | 0.3% | Jan 27, 2025 |
26Monitor | CVE-2024-12336No exploit | WC Affiliate – A Complete WooCommerce Affiliate Plugin <= 2.5.3 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure via wf-expcodexpert · wc affiliate · CWE-862 | Medium6.5 | — | 0.3% | Mar 15, 2025 |
24Monitor | CVE-2024-12334No exploit | WC Affiliate – A Complete WooCommerce Affiliate Plugin <= 2.4 - Reflected Cross-Site Scriptingcodexpert · wc affiliate · CWE-79 | Medium6.1 | — | 0.3% | Jan 26, 2025 |
- CVE-2024-437139Monitor
CoDesigner WooCommerce Builder for Elementor – Customize Checkout, Shop, Email, Products & More <= 4.4.1 - Unauthenticated PHP Object Injection
CriticalCVSS 9.8No exploitEPSS 1%codexpert · codesignerJun 13, 2024
- CVE-2022-313128Monitor
Search Logger <= 0.9 - Admin+ SQLi
HighCVSS 7.2No exploitEPSS 1%codexpert · search loggerOct 17, 2022
- CVE-2024-1232128Monitor
WC Affiliate <= 2.3.9 - Reflected XSS
HighCVSS 7.1No exploitEPSS 0%codexpert · wc affiliateJan 27, 2025
- CVE-2024-1233626Monitor
WC Affiliate – A Complete WooCommerce Affiliate Plugin <= 2.5.3 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure via wf-exp
MediumCVSS 6.5No exploitEPSS 0%codexpert · wc affiliateMar 15, 2025
- CVE-2024-1233424Monitor
WC Affiliate – A Complete WooCommerce Affiliate Plugin <= 2.4 - Reflected Cross-Site Scripting
MediumCVSS 6.1No exploitEPSS 0%codexpert · wc affiliateJan 26, 2025