İçeriğe atla
Noroxi

PickPlugins kayıtları

pickplugins üreticisine ait 36 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%25
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

36 kayıt
  • CVE-2022-4693
    39İzleyin

    User Verification < 1.0.94 - Authentication Bypass

    KritikCVSS 9,8İstismar yokEPSS %2

    pickplugins · user verification23 Oca 2023

  • CVE-2024-8253
    38İzleyin

    Post Grid and Gutenberg Blocks 2.2.87 - 2.2.90 - Authenticated (Subscriber+) Privilege Escalation

    YüksekCVSS 8,8İstismar yokEPSS %9

    pickplugins · post grid11 Eyl 2024

  • CVE-2020-35939
    36İzleyin

    PHP Object injection vulnerabilities in the Team Showcase plugin before 1.22.16 for WordPress allow remote authenticated attackers to inject

    YüksekCVSS 8,8İstismar yokEPSS %2

    pickplugins · post grid31 Ara 2020

  • CVE-2020-35938
    36İzleyin

    PHP Object injection vulnerabilities in the Post Grid plugin before 2.0.73 for WordPress allow remote authenticated attackers to inject arbi

    YüksekCVSS 8,8İstismar yokEPSS %2

    pickplugins · post grid31 Ara 2020

  • CVE-2024-13408
    35İzleyin

    Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget <= 1.6.10 - Authenticated (Contributor+) Local File Inclusion

    YüksekCVSS 8,8İstismar yokEPSS %1

    pickplugins · post grid24 Oca 2025

  • CVE-2021-4450
    35İzleyin

    Post Grid <= 2.1.12 - Contributor+ SQL Injection

    YüksekCVSS 8,8İstismar yokEPSS %0

    pickplugins · post grid16 Eki 2024

  • CVE-2020-35936
    33İzleyin

    Stored Cross-Site Scripting (XSS) vulnerabilities in the Post Grid plugin before 2.0.73 for WordPress allow remote authenticated attackers t

    YüksekCVSS 8,0İstismar yokEPSS %2

    pickplugins · post grid31 Ara 2020

  • CVE-2020-35937
    33İzleyin

    Stored Cross-Site Scripting (XSS) vulnerabilities in the Team Showcase plugin before 1.22.16 for WordPress allow remote authenticated attack

    YüksekCVSS 8,0İstismar yokEPSS %2

    pickplugins · post grid31 Ara 2020

  • CVE-2023-40211
    31İzleyin

    WordPress Post Grid Plugin <= 2.2.50 is vulnerable to Sensitive Data Exposure

    YüksekCVSS 7,5Kavram kanıtıEPSS %2

    pickplugins · post grid combo30 Kas 2023

  • CVE-2024-32816
    30İzleyin

    WordPress Combo Blocks plugin <= 2.2.78 - Sensitive Data Exposure via API vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %1

    pickplugins · post grid24 Nis 2024

  • CVE-2023-7072
    30İzleyin

    Post Grid Combo – 36+ Gutenberg Blocks <= 2.2.68 - Information Exposure via get_posts API Endpoint

    YüksekCVSS 7,5İstismar yokEPSS %1

    pickplugins · post grid combo12 Mar 2024

  • CVE-2024-38726
    30İzleyin

    WordPress Product Designer plugin <= 1.0.33 - Arbitrary Content Deletion vulnerability

    YüksekCVSS 7,5İstismar yokEPSS %0

    pickplugins · product designer1 Kas 2024

  • CVE-2024-13796
    30İzleyin

    Post Grid and Gutenberg Blocks – ComboBlocks <= 2.3.6 - Unauthenticated User Information Exposure

    YüksekCVSS 7,5İstismar yokEPSS %0

    pickplugins · post grid28 Şub 2025

  • CVE-2021-24488
    27İzleyin

    Post Grid < 2.1.8 - Reflected Cross-Site Scripting (XSS)

    OrtaCVSS 6,1Kavram kanıtıEPSS %11

    pickplugins · post grid2 Ağu 2021

  • CVE-2021-24300
    27İzleyin

    PickPlugins Product Slider for WooCommerce < 1.13.22 - Reflected Cross-Site Scripting (XSS)

    OrtaCVSS 6,1Kavram kanıtıEPSS %11

    pickplugins · product slider for woocommerce24 May 2021

  • CVE-2024-0881
    26İzleyin

    Combo Blocks < 2.2.76 - Unauthenticated Password Protected Posts Access

    OrtaCVSS 5,4Kavram kanıtıEPSS %17

    pickplugins · post grid11 Nis 2024

  • CVE-2022-0447
    25İzleyin

    Post Grid < 2.1.16 - Reflected Cross-Site Scripting via post_types

    OrtaCVSS 6,4İstismar yokEPSS %1

    pickplugins · post grid11 Nis 2022

  • CVE-2024-7588
    25İzleyin

    Gutenberg Blocks, Page Builder – ComboBlocks <= 2.2.87 - Authenticated (Contributor+) Stored Cross-Site Scripting via Accordion Block

    OrtaCVSS 6,4İstismar yokEPSS %0

    pickplugins · post grid14 Ağu 2024

  • CVE-2024-3155
    25İzleyin

    Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel – Combo Blocks <= 2.2.80 - Authenticated (Contributor+) Stored Cross-Site Scr

    OrtaCVSS 6,4İstismar yokEPSS %0

    pickplugins · post grid20 May 2024

  • CVE-2021-24986
    24İzleyin

    Post Grid < 2.1.16 - Reflected Cross-Site Scripting via keyword

    OrtaCVSS 6,1İstismar yokEPSS %1

    pickplugins · post grid11 Nis 2022

  • CVE-2024-45459
    24İzleyin

    WordPress Product Slider for WooCommerce by PickPlugins plugin <= 1.13.50 - Reflected Cross Site Scripting (XSS) vulnerability

    OrtaCVSS 6,1İstismar yokEPSS %0

    pickplugins · product slider for woocommerce15 Eyl 2024

  • CVE-2024-44002
    24İzleyin

    WordPress Team Showcase plugin <= 1.22.25 - Reflected Cross Site Scripting (XSS) vulnerability

    OrtaCVSS 6,1İstismar yokEPSS %0

    pickplugins · team showcase17 Eyl 2024

  • CVE-2020-13644
    21İzleyin

    An issue was discovered in the Accordion plugin before 2.2.9 for WordPress.

    OrtaCVSS 5,4İstismar yokEPSS %1

    pickplugins · accordion28 May 2020

  • CVE-2021-24283
    21İzleyin

    Accordion < 2.2.30 - Authenticated Reflected Cross-Site Scripting (XSS)

    OrtaCVSS 5,4İstismar yokEPSS %1

    pickplugins · accordion14 May 2021

  • CVE-2022-4836
    21İzleyin

    Breadcrumb < 1.5.33 - Contributor+ Stored XSS via Shortcode

    OrtaCVSS 5,4İstismar yokEPSS %1

    pickplugins · breadcrumb6 Şub 2023