Skip to content
Noroxi

coolplugins records

12 published records for vendor coolplugins.

All records

12 records
  • WordPress Cryptocurrency Widgets – Price Ticker & Coins List plugin <= 2.6.2 - Broken Access Control vulnerability

    CriticalCVSS 9.8No exploitEPSS 1%

    coolplugins · cryptocurrency widgetsDec 13, 2024

  • WordPress Cryptocurrency Widgets For Elementor plugin <= 1.6.4 - Local File Inclusion vulnerability

    CriticalCVSS 9.8No exploitEPSS 1%

    coolplugins · cryptocurrency widgets for elementorNov 30, 2024

  • CVE-2022-4950
    35Monitor

    Cool Plugins (Various Versions) - Arbitrary Plugin Installation and Activation

    HighCVSS 8.8No exploitEPSS 1%

    coolplugins · cool timelineJun 6, 2023

  • CVE-2021-4349
    35Monitor

    Process Steps Template Designer <= 1.2.1 - Cross-Site Request Forgery

    HighCVSS 8.8No exploitEPSS 1%

    coolplugins · process steps template designerJun 6, 2023

  • WordPress Events Shortcodes & Templates For The Events Calendar Plugin <= 2.3.1 is vulnerable to SQL Injection

    HighCVSS 8.8No exploitEPSS 1%

    coolplugins · events shortcodes for the events calendarJan 8, 2024

  • CVE-2024-0709
    30Monitor

    The Cryptocurrency Widgets – Price Ticker & Coins List plugin for WordPress is vulnerable to SQL Injection via the 'coinslist' parameter in

    HighCVSS 7.5No exploitEPSS 1%

    coolplugins · cryptocurrency widgetsFeb 5, 2024

  • WordPress Cryptocurrency Widgets plugin <= 2.8.0 - Reflected Cross Site Scripting (XSS) vulnerability

    MediumCVSS 6.1No exploitEPSS 0%

    coolplugins · cryptocurrency widgetsAug 18, 2024

  • CVE-2024-0977
    21Monitor

    Timeline Widget For Elementor (Elementor Timeline, Vertical & Horizontal Timeline) <= 1.5.3 - Authenticated (Contributor+) Stored Cross-Site Scripting

    MediumCVSS 5.4No exploitEPSS 0%

    coolplugins · timeline widget for elementorFeb 7, 2024

  • WordPress Web Stories Widgets For Elementor plugin <= 1.1 - Cross Site Scripting (XSS) vulnerability

    MediumCVSS 5.4No exploitEPSS 0%

    coolplugins · web stories widgets for elementorNov 11, 2024

  • WordPress Cryptocurrency Widgets – Price Ticker & Coins List Plugin <= 2.6.8 is vulnerable to Broken Access Control

    MediumCVSS 4.7No exploitEPSS 0%

    coolplugins · cryptocurrency widgetsMar 13, 2024

  • Cool Timeline (Horizontal & Vertical Timeline) <= 2.0.2 - Cross-Site Request Forgery Bypass

    MediumCVSS 4.3No exploitEPSS 0%

    coolplugins · cool timelineJul 1, 2023

  • CVE-2021-4413
    17Monitor

    Process Steps Template Designer <= 1.2.1 - Cross-Site Request Forgery Bypass

    MediumCVSS 4.3No exploitEPSS 0%

    coolplugins · process steps template designerJul 12, 2023