Skip to content
Noroxi

BoldGrid records

27 published records for vendor boldgrid.

All records

27 records
  • CVE-2013-2010
    61This week

    WordPress W3 Total Cache Plugin 0.9.2.8 has a Remote PHP Code Execution Vulnerability

    CriticalCVSS 9.8WeaponizedEPSS 74%

    automattic · wp super cacheFeb 12, 2020

  • CVE-2019-6715
    36Monitor

    pub/sns.php in the W3 Total Cache plugin before 0.9.4 for WordPress allows remote attackers to read arbitrary files via the SubscribeURL fie

    HighCVSS 7.5Proof of conceptEPSS 19%

    boldgrid · w3 total cacheApr 1, 2019

  • W3 Total Cache <= 2.8.1 - Authenticated (Subscriber+) Missing Authorization to Server-Side Request Forgery

    HighCVSS 8.5Proof of conceptEPSS 2%

    boldgrid · w3 total cacheJan 14, 2025

  • WordPress Post and Page Builder by BoldGrid – Visual Drag and Drop Editor Plugin <= 1.24.1 is vulnerable to Cross Site Request Forgery (CSRF)

    HighCVSS 8.8No exploitEPSS 0%

    boldgrid · post and page builderOct 6, 2023

  • CVE-2012-6077
    32Monitor

    W3 Total Cache before 0.9.2.5 allows remote attackers to retrieve password hash information due to insecure storage of database cache files.

    HighCVSS 7.5Proof of conceptEPSS 5%

    boldgrid · w3 total cacheNov 22, 2019

  • CVE-2012-6078
    31Monitor

    W3 Total Cache before 0.9.2.5 generates hash keys insecurely which allows remote attackers to predict the values of the hashes.

    HighCVSS 7.5No exploitEPSS 2%

    boldgrid · w3 total cacheNov 22, 2019

  • W3 Total Cache <= 2.8.1 Information Exposure via Log Files

    HighCVSS 7.5Proof of conceptEPSS 2%

    boldgrid · w3 total cacheJan 14, 2025

  • CVE-2012-6079
    31Monitor

    W3 Total Cache before 0.9.2.5 exposes sensitive cached database information which allows remote attackers to download this information via t

    HighCVSS 7.5No exploitEPSS 2%

    boldgrid · w3 total cacheNov 22, 2019

  • Total Upkeep by BoldGrid <= 1.14.9 - Unauthenticated Backup Download

    HighCVSS 7.5WeaponizedEPSS 2%

    boldgrid · total upkeepJul 12, 2025

  • CVE-2023-5359
    30Monitor

    W3 Total Cache <= 2.7.5 - Sensitive Credentials Stored in Plaintext

    HighCVSS 7.5Proof of conceptEPSS 1%

    boldgrid · w3 total cacheSep 24, 2024

  • WordPress Total Upkeep plugin <= 1.15.8 - Arbitrary File Download vulnerability

    HighCVSS 7.5No exploitEPSS 1%

    boldgrid · total upkeepMay 17, 2024

  • CVE-2024-9461
    28Monitor

    Total Upkeep <= 1.16.6 - Authenticated (Administrator+) Remote Code Execution via Backup Settings

    HighCVSS 7.2No exploitEPSS 1%

    boldgrid · total upkeepNov 26, 2024

  • CVE-2025-2257
    28Monitor

    Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid <= 1.16.10 - Authenticated (Admin+) Command Injection

    HighCVSS 7.2No exploitEPSS 1%

    boldgrid · total upkeepMar 26, 2025

  • CVE-2014-9414
    27Monitor

    The W3 Total Cache plugin before 0.9.4.1 for WordPress does not properly handle empty nonces, which allows remote attackers to conduct cross

    MediumCVSS 6.8No exploitEPSS 1%

    boldgrid · w3 total cacheDec 24, 2014

  • CVE-2025-0859
    26Monitor

    Post and Page Builder by BoldGrid <= 1.27.6 - Path Traversal to Authenticated (Contributor+) Arbitrary File Read via template_via_url Function

    MediumCVSS 6.5No exploitEPSS 1%

    boldgrid · post and page builderFeb 6, 2025

  • Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid <= 1.16.8 - Authenticated (Administrator+) Server-Side Request Forgery

    MediumCVSS 6.5No exploitEPSS 0%

    boldgrid · total upkeepFeb 27, 2025

  • W3 Total Cache < 2.1.5 - Reflected XSS in Extensions Page (JS Context)

    MediumCVSS 6.1Proof of conceptEPSS 2%

    boldgrid · w3 total cacheJul 19, 2021

  • W3 Total Cache < 2.1.4 - Reflected XSS in Extensions Page (Attribute Context)

    MediumCVSS 6.1Proof of conceptEPSS 2%

    boldgrid · w3 total cacheJul 19, 2021

  • W3 Total Cache <= 2.8.1 Missing Authorization to Unauthenticated Plugin Deactivation and Extensions Activation/Deactivation

    MediumCVSS 5.3No exploitEPSS 1%

    boldgrid · w3 total cacheJan 14, 2025

  • CVE-2024-2950
    21Monitor

    BoldGrid Easy SEO – Simple and Effective SEO <= 1.6.14 - Information Exposure

    MediumCVSS 5.3No exploitEPSS 1%

    boldgrid · easy seoApr 6, 2024

  • CVE-2024-6848
    21Monitor

    Post and Page Builder by BoldGrid – Visual Drag and Drop Editor <= 1.26.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via File Upload

    MediumCVSS 5.4No exploitEPSS 0%

    boldgrid · post and page builderJul 20, 2024

  • CVE-2024-2888
    21Monitor

    WordPress Post and Page Builder by BoldGrid plugin <= 1.26.2 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 5.4No exploitEPSS 0%

    boldgrid · post and page builderMar 26, 2024

  • WordPress Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plugin <= 1.27.5 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 5.4No exploitEPSS 0%

    boldgrid · post and page builder by boldgrid - visual drag and drop editorJan 15, 2025

  • CVE-2024-4400
    21Monitor

    Post and Page Builder by BoldGrid – Visual Drag and Drop Editor <= 1.26.4 - Authenticated (Contributer+) Stored Cross-Site Scripting

    MediumCVSS 5.4No exploitEPSS 0%

    boldgrid · post and page builderMay 16, 2024

  • W3 Total Cache < 2.1.3 - Authenticated Stored XSS

    MediumCVSS 4.8No exploitEPSS 1%

    boldgrid · w3 total cacheJul 12, 2021