impleCode records
13 published records for vendor implecode.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 69.2%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')6
- CWE-352 Cross-Site Request Forgery (CSRF)4
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-191 Integer Underflow (Wrap or Wraparound)1
The weakness classes this vendor ships most often: where to look.
CWEAll records
13 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
30Monitor | CVE-2023-51688No exploit | WordPress eCommerce Product Catalog Plugin <= 3.3.26 is vulnerable to Sensitive Data Exposureimplecode · ecommerce product catalog · CWE-200 | High7.5 | — | 0.5% | Dec 29, 2023 |
30Monitor | CVE-2023-51687No exploit | WordPress Product Catalog Simple Plugin <= 1.7.6 is vulnerable to Sensitive Data Exposureimplecode · product catalog simple · CWE-200 | High7.5 | — | 0.5% | Dec 29, 2023 |
26Monitor | CVE-2021-24894No exploit | Reviews Plus < 1.2.14 - Subscriber+ Reviews DoSimplecode · reviews plus · CWE-191 | Medium6.5 | — | 1.5% | Nov 23, 2021 |
26Monitor | CVE-2023-5979No exploit | eCommerce Product Catalog Plugin for WordPress < 3.3.26 - Products Deletion via CSRFimplecode · ecommerce product catalog · CWE-352 | Medium6.5 | — | 0.3% | Dec 4, 2023 |
24Monitor | CVE-2021-24875Proof of concept | eCommerce Product Catalog for WordPress < 3.0.39 - Reflected Cross-Site Scriptingimplecode · ecommerce product catalog · CWE-79 | Medium6.1 | — | 1.7% | Nov 23, 2021 |
24Monitor | CVE-2023-29388No exploit | WordPress Product Catalog Simple Plugin <= 1.6.17 is vulnerable to Cross Site Scripting (XSS)implecode · product catalog simple · CWE-79 | Medium6.1 | — | 0.4% | Apr 7, 2023 |
21Monitor | CVE-2023-47839No exploit | WordPress eCommerce Product Catalog Plugin <= 3.3.26 is vulnerable to Cross Site Scripting (XSS)implecode · ecommerce product catalog · CWE-79 | Medium5.4 | — | 0.4% | Nov 22, 2023 |
21Monitor | CVE-2025-1405No exploit | Product Catalog Simple <= 1.7.11 - Authenticated (Contributor+) Stored Cross-Site Scripting via show_products Shortcodeimplecode · product catalog simple · CWE-79 | Medium5.4 | — | 0.3% | Feb 28, 2025 |
19Monitor | CVE-2023-25049No exploit | WordPress eCommerce Product Catalog Plugin <= 3.3.4 is vulnerable to Cross Site Scripting (XSS)implecode · ecommerce product catalog · CWE-79 | Medium4.8 | — | 0.4% | Apr 7, 2023 |
19Monitor | CVE-2023-1470No exploit | eCommerce Product Catalog plugin for WordPress <= 3.3.8 - Authenticated (Administrator+) Stored Cross-Site Scriptingimplecode · ecommerce product catalog · CWE-79 | Medium4.8 | — | 0.4% | Mar 17, 2023 |
17Monitor | CVE-2021-4393No exploit | eCommerce Product Catalog Plugin for WordPress <= 3.0.17 - Cross-Site Request Forgery Bypassimplecode · ecommerce product catalog · CWE-352 | Medium4.3 | — | 0.5% | Jul 1, 2023 |
17Monitor | CVE-2021-4392No exploit | eCommerce Product Catalog Plugin for WordPress <= 2.9.43 - Cross-Site Request Forgery Bypassimplecode · ecommerce product catalog · CWE-352 | Medium4.3 | — | 0.5% | Jul 1, 2023 |
17Monitor | CVE-2020-36743No exploit | Product Catalog Simple <= 1.5.13 - Cross-Site Request Forgery Bypassimplecode · product catalog simple · CWE-352 | Medium4.3 | — | 0.4% | Jul 1, 2023 |
- CVE-2023-5168830Monitor
WordPress eCommerce Product Catalog Plugin <= 3.3.26 is vulnerable to Sensitive Data Exposure
HighCVSS 7.5No exploitEPSS 0%implecode · ecommerce product catalogDec 29, 2023
- CVE-2023-5168730Monitor
WordPress Product Catalog Simple Plugin <= 1.7.6 is vulnerable to Sensitive Data Exposure
HighCVSS 7.5No exploitEPSS 0%implecode · product catalog simpleDec 29, 2023
- CVE-2021-2489426Monitor
Reviews Plus < 1.2.14 - Subscriber+ Reviews DoS
MediumCVSS 6.5No exploitEPSS 1%implecode · reviews plusNov 23, 2021
- CVE-2023-597926Monitor
eCommerce Product Catalog Plugin for WordPress < 3.3.26 - Products Deletion via CSRF
MediumCVSS 6.5No exploitEPSS 0%implecode · ecommerce product catalogDec 4, 2023
- CVE-2021-2487524Monitor
eCommerce Product Catalog for WordPress < 3.0.39 - Reflected Cross-Site Scripting
MediumCVSS 6.1Proof of conceptEPSS 2%implecode · ecommerce product catalogNov 23, 2021
- CVE-2023-2938824Monitor
WordPress Product Catalog Simple Plugin <= 1.6.17 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 6.1No exploitEPSS 0%implecode · product catalog simpleApr 7, 2023
- CVE-2023-4783921Monitor
WordPress eCommerce Product Catalog Plugin <= 3.3.26 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 5.4No exploitEPSS 0%implecode · ecommerce product catalogNov 22, 2023
- CVE-2025-140521Monitor
Product Catalog Simple <= 1.7.11 - Authenticated (Contributor+) Stored Cross-Site Scripting via show_products Shortcode
MediumCVSS 5.4No exploitEPSS 0%implecode · product catalog simpleFeb 28, 2025
- CVE-2023-2504919Monitor
WordPress eCommerce Product Catalog Plugin <= 3.3.4 is vulnerable to Cross Site Scripting (XSS)
MediumCVSS 4.8No exploitEPSS 0%implecode · ecommerce product catalogApr 7, 2023
- CVE-2023-147019Monitor
eCommerce Product Catalog plugin for WordPress <= 3.3.8 - Authenticated (Administrator+) Stored Cross-Site Scripting
MediumCVSS 4.8No exploitEPSS 0%implecode · ecommerce product catalogMar 17, 2023
- CVE-2021-439317Monitor
eCommerce Product Catalog Plugin for WordPress <= 3.0.17 - Cross-Site Request Forgery Bypass
MediumCVSS 4.3No exploitEPSS 0%implecode · ecommerce product catalogJul 1, 2023
- CVE-2021-439217Monitor
eCommerce Product Catalog Plugin for WordPress <= 2.9.43 - Cross-Site Request Forgery Bypass
MediumCVSS 4.3No exploitEPSS 0%implecode · ecommerce product catalogJul 1, 2023
- CVE-2020-3674317Monitor
Product Catalog Simple <= 1.5.13 - Cross-Site Request Forgery Bypass
MediumCVSS 4.3No exploitEPSS 0%implecode · product catalog simpleJul 1, 2023