wpswings kayıtları
wpswings üreticisine ait 16 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 3
- Düzeltme kaydı olan
- %18,8
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-352 Cross-Site Request Forgery (CSRF)3
- CWE-862 Missing Authorization3
- CWE-434 Unrestricted Upload of File with Dangerous Type3
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-285 Improper Authorization2
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
16 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
44Planlayın | CVE-2022-4395Kavram kanıtı | Membership For WooCommerce < 2.1.7 - Unauthenticated Arbitrary File Uploadwpswings · membership for woocommerce · CWE-434 | Kritik9,8 | — | %17,6 | 30 Oca 2023 |
41Planlayın | CVE-2022-4047Kavram kanıtı | Return Refund and Exchange For WooCommerce < 4.0.9 - Unauthenticated Arbitrary File Uploadwpswings · return refund and exchange for woocommerce · CWE-434 | Kritik9,8 | — | %6,2 | 26 Ara 2022 |
40Planlayın | CVE-2024-8425Kavram kanıtı | WooCommerce Ultimate Gift Card <= 2.9.2 - Unauthenticated Arbitrary File Uploadwpswings · woocommerce ultimate gift card · CWE-434 | Kritik9,8 | — | %4,1 | 28 Şub 2025 |
39İzleyin | CVE-2024-25100İstismar yok | WordPress Coupon Referral Program plugin < 1.8.4 - Unauthenticated PHP Object Injection vulnerabilitywpswings · coupon referral program · CWE-502 | Kritik9,8 | — | %0,8 | 12 Şub 2024 |
39İzleyin | CVE-2023-27608İstismar yok | WordPress Points and Rewards for WooCommerce plugin <= 1.5.0 - Broken Access Control vulnerabilitywpswings · points and rewards for woocommerce · CWE-862 | Kritik9,8 | — | %0,5 | 25 Mar 2024 |
30İzleyin | CVE-2023-52190İstismar yok | WordPress Coupon Referral Program Plugin <= 1.7.2 is vulnerable to Sensitive Data Exposurewpswings · coupon referral program · CWE-200 | Yüksek7,5 | — | %0,5 | 8 Oca 2024 |
30İzleyin | CVE-2024-13641İstismar yok | Return Refund and Exchange For WooCommerce <= 4.4.5 - Unauthenticated Sensitive Information Exposure Through Unprotected Directorywpswings · return refund and exchange for woocommerce · CWE-200 | Yüksek7,5 | — | %0,5 | 14 Şub 2025 |
30İzleyin | CVE-2024-38699İstismar yok | WordPress Wallet System for WooCommerce plugin <= 2.5.13 - Sensitive Data Exposure via Exported File vulnerabilitywp swings · wallet system for woocommerce · CWE-862 | Yüksek7,5 | — | %0,4 | 13 Ağu 2024 |
24İzleyin | CVE-2022-4321Kavram kanıtı | PDF Generator for WordPress < 1.1.2 - Reflected XSSwpswings · pdf generator for wordpress · CWE-79 | Orta6,1 | — | %1,2 | 6 Şub 2023 |
21İzleyin | CVE-2024-13692İstismar yok | Return Refund and Exchange For WooCommerce <= 4.4.5 - Authenticated (Subscriber+) Insecure Direct Object Referencewpswings · return refund and exchange for woocommerce · CWE-285 | Orta5,4 | — | %0,3 | 14 Şub 2025 |
21İzleyin | CVE-2024-1857İstismar yok | Ultimate Gift Cards for WooCommerce – Create, Redeem & Manage Digital Gift Certificates with Personalized Templates <= 2.6.6 - Missing Authorization to Unauthenwpswings · ultimate gift cards for woocommerce · CWE-862 | Orta5,3 | — | %0,3 | 16 Mar 2024 |
19İzleyin | CVE-2025-5103İstismar yok | Ultimate Gift Cards for WooCommerce <= 3.1.4 - Authenticated (Administrator+) SQL Injection via wps_wgm_save_post Functionwpswings · ultimate gift cards for woocommerce · CWE-89 | Orta4,9 | — | %0,4 | 3 Haz 2025 |
17İzleyin | CVE-2021-4391İstismar yok | Ultimate Gift Cards for WooCommerce <= 2.1.1 - Cross-Site Request Forgery Bypasswpswings · ultimate gift cards for woocommerce · CWE-352 | Orta4,3 | — | %0,5 | 1 Tem 2023 |
17İzleyin | CVE-2022-4426İstismar yok | Mautic Integration For WooCommerce < 1.0.3 - Arbitrary Options Update via CSRFwpswings · mautic integration for woocommerce · CWE-352 | Orta4,3 | — | %0,3 | 9 Oca 2023 |
17İzleyin | CVE-2024-13724İstismar yok | Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction <= 2.6.2 - Missing Authorizationwpswings · wallet system for woocommerce · CWE-285 | Orta4,3 | — | %0,2 | 4 Mar 2025 |
17İzleyin | CVE-2024-13682İstismar yok | Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction <= 2.6.2 - Cross-Site Request Forgerywpswings · wallet system for woocommerce · CWE-352 | Orta4,3 | — | %0,1 | 4 Mar 2025 |
- CVE-2022-439544Planlayın
Membership For WooCommerce < 2.1.7 - Unauthenticated Arbitrary File Upload
KritikCVSS 9,8Kavram kanıtıEPSS %18wpswings · membership for woocommerce30 Oca 2023
- CVE-2022-404741Planlayın
Return Refund and Exchange For WooCommerce < 4.0.9 - Unauthenticated Arbitrary File Upload
KritikCVSS 9,8Kavram kanıtıEPSS %6wpswings · return refund and exchange for woocommerce26 Ara 2022
- CVE-2024-842540Planlayın
WooCommerce Ultimate Gift Card <= 2.9.2 - Unauthenticated Arbitrary File Upload
KritikCVSS 9,8Kavram kanıtıEPSS %4wpswings · woocommerce ultimate gift card28 Şub 2025
- CVE-2024-2510039İzleyin
WordPress Coupon Referral Program plugin < 1.8.4 - Unauthenticated PHP Object Injection vulnerability
KritikCVSS 9,8İstismar yokEPSS %1wpswings · coupon referral program12 Şub 2024
- CVE-2023-2760839İzleyin
WordPress Points and Rewards for WooCommerce plugin <= 1.5.0 - Broken Access Control vulnerability
KritikCVSS 9,8İstismar yokEPSS %0wpswings · points and rewards for woocommerce25 Mar 2024
- CVE-2023-5219030İzleyin
WordPress Coupon Referral Program Plugin <= 1.7.2 is vulnerable to Sensitive Data Exposure
YüksekCVSS 7,5İstismar yokEPSS %1wpswings · coupon referral program8 Oca 2024
- CVE-2024-1364130İzleyin
Return Refund and Exchange For WooCommerce <= 4.4.5 - Unauthenticated Sensitive Information Exposure Through Unprotected Directory
YüksekCVSS 7,5İstismar yokEPSS %0wpswings · return refund and exchange for woocommerce14 Şub 2025
- CVE-2024-3869930İzleyin
WordPress Wallet System for WooCommerce plugin <= 2.5.13 - Sensitive Data Exposure via Exported File vulnerability
YüksekCVSS 7,5İstismar yokEPSS %0wp swings · wallet system for woocommerce13 Ağu 2024
- CVE-2022-432124İzleyin
PDF Generator for WordPress < 1.1.2 - Reflected XSS
OrtaCVSS 6,1Kavram kanıtıEPSS %1wpswings · pdf generator for wordpress6 Şub 2023
- CVE-2024-1369221İzleyin
Return Refund and Exchange For WooCommerce <= 4.4.5 - Authenticated (Subscriber+) Insecure Direct Object Reference
OrtaCVSS 5,4İstismar yokEPSS %0wpswings · return refund and exchange for woocommerce14 Şub 2025
- CVE-2024-185721İzleyin
Ultimate Gift Cards for WooCommerce – Create, Redeem & Manage Digital Gift Certificates with Personalized Templates <= 2.6.6 - Missing Authorization to Unauthen
OrtaCVSS 5,3İstismar yokEPSS %0wpswings · ultimate gift cards for woocommerce16 Mar 2024
- CVE-2025-510319İzleyin
Ultimate Gift Cards for WooCommerce <= 3.1.4 - Authenticated (Administrator+) SQL Injection via wps_wgm_save_post Function
OrtaCVSS 4,9İstismar yokEPSS %0wpswings · ultimate gift cards for woocommerce3 Haz 2025
- CVE-2021-439117İzleyin
Ultimate Gift Cards for WooCommerce <= 2.1.1 - Cross-Site Request Forgery Bypass
OrtaCVSS 4,3İstismar yokEPSS %0wpswings · ultimate gift cards for woocommerce1 Tem 2023
- CVE-2022-442617İzleyin
Mautic Integration For WooCommerce < 1.0.3 - Arbitrary Options Update via CSRF
OrtaCVSS 4,3İstismar yokEPSS %0wpswings · mautic integration for woocommerce9 Oca 2023
- CVE-2024-1372417İzleyin
Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction <= 2.6.2 - Missing Authorization
OrtaCVSS 4,3İstismar yokEPSS %0wpswings · wallet system for woocommerce4 Mar 2025
- CVE-2024-1368217İzleyin
Wallet System for WooCommerce – Wallet, Wallet Cashback, Refunds, Partial Payment, Wallet Restriction <= 2.6.2 - Cross-Site Request Forgery
OrtaCVSS 4,3İstismar yokEPSS %0wpswings · wallet system for woocommerce4 Mar 2025