Skip to content
Noroxi

POSIMYTH records

42 published records for vendor posimyth.

All records

42 records
  • The Plus Addons for Elementor Page Builder < 4.1.7 - Authentication Bypass

    CriticalCVSS 9.8Proof of conceptEPSS 14%

    posimyth · the plus addons for elementorApr 5, 2021

  • The Plus Addons for Elementor Pro < 5.0.7 - Unauthenticated SQL Injection

    CriticalCVSS 9.8No exploitEPSS 2%

    posimyth · the plus addons for elementorJan 10, 2022

  • WordPress Nexter Theme <= 2.0.3 is vulnerable to SQL Injection

    CriticalCVSS 9.8Proof of conceptEPSS 1%

    posimyth · nexterNov 6, 2023

  • WordPress The Plus Addons for Elementor Pro plugin <= 5.2.8 - Unauthenticated Local File Inclusion vulnerability

    CriticalCVSS 9.8No exploitEPSS 1%

    posimyth · the plus addons for elementorMay 17, 2024

  • CVE-2021-4331
    35Monitor

    The Plus Addons for Elementor PRO <= 4.1.9 & The Plus Addons for Elementor <= 2.0.6 - Authenticated (Contributor+) Privilege Escalation

    HighCVSS 8.8No exploitEPSS 1%

    posimyth · the plus addons for elementorMar 7, 2023

  • CVE-2024-5455
    35Monitor

    The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce <= 5.5.6 - Authenticated (Contributor+) Local File Inclusion

    HighCVSS 8.8No exploitEPSS 1%

    posimyth · the plus addons for elementorJun 21, 2024

  • CVE-2024-2203
    35Monitor

    The Plus Addons for Elementor <= 5.4.1 - Authenticated (Contributor+) Local File Inclusion via Clients Widget

    HighCVSS 8.8No exploitEPSS 1%

    posimyth · the plus addons for elementorMar 26, 2024

  • WordPress The Plus Addons for Elementor plugin <= 5.6.2 - Broken Access Control vulnerability

    HighCVSS 8.8No exploitEPSS 1%

    posimyth · the plus addons for elementorNov 1, 2024

  • WordPress Nexter Blocks plugin <= 3.2.5 - Broken Access Control vulnerability

    HighCVSS 8.8No exploitEPSS 0%

    posimyth · nexter blocksJun 9, 2024

  • The Plus Addons for Elementor Pro < 5.0.7 - Sensitive Data Disclosure

    HighCVSS 7.5No exploitEPSS 2%

    posimyth · the plus addons for elementorJan 10, 2022

  • WordPress Nexter Extension Plugin <= 2.0.3 is vulnerable to Remote Code Execution (RCE)

    HighCVSS 7.2No exploitEPSS 1%

    posimyth · nexter extensionDec 29, 2023

  • CVE-2021-4332
    26Monitor

    The Plus Addons for Elementor PRO <= 4.1.9 & The Plus Addons for Elementor <= 2.0.6 - Authenticated (Contributor+) Arbitrary File Read

    MediumCVSS 6.5No exploitEPSS 1%

    posimyth · the plus addons for elementorMar 7, 2023

  • The Plus Addons for Elementor < 4.1.12 - Reflected Cross-Site Scripting (XSS)

    MediumCVSS 6.1Proof of conceptEPSS 2%

    posimyth · the plus addons for elementorJun 14, 2021

  • The Plus Addons for Elementor Page Builder < 4.1.10 - Open Redirect

    MediumCVSS 6.1Proof of conceptEPSS 2%

    posimyth · the plus addons for elementorJun 14, 2021

  • CVE-2024-2210
    25Monitor

    The Plus Addons for Elementor <= 5.4.1 - Authenticated (Contributor+) Local File Inclusion via Team Member Listing

    MediumCVSS 6.4No exploitEPSS 0%

    posimyth · the plus addons for elementorMar 26, 2024

  • WordPress Nexter Extension Plugin <= 2.0.3 is vulnerable to Cross Site Scripting (XSS)

    MediumCVSS 6.1No exploitEPSS 0%

    posimyth · nexter extensionOct 25, 2023

  • CVE-2024-5344
    24Monitor

    The Plus Addons for Elementor Page Builder <= 5.5.6 - Reflected Cross-Site Scripting via WP Login and Register Widget

    MediumCVSS 6.1No exploitEPSS 0%

    posimyth · the plus addons for elementorJun 20, 2024

  • The Plus Addons for Elementor Page Builder < 4.1.11 - Arbitrary Reset Pwd Email Sending

    MediumCVSS 5.3No exploitEPSS 1%

    posimyth · the plus addons for elementorJun 14, 2021

  • CVE-2024-4484
    21Monitor

    The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce <= 5.5.2 - Authenticated (Contributor+) Stored Cross-Site Scri

    MediumCVSS 5.4No exploitEPSS 1%

    posimyth · the plus addons for elementorMay 24, 2024

  • The Plus Addons for Elementor Page Builder Lite < 2.0.6 - Contributor+ Stored XSS

    MediumCVSS 5.4No exploitEPSS 1%

    posimyth · the plus addons for elementor page builder liteMay 5, 2021

  • CVE-2024-0445
    21Monitor

    The Plus Addons for Elementor <= 5.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting

    MediumCVSS 5.4No exploitEPSS 1%

    posimyth · the plus addons for elementorMay 14, 2024

  • CVE-2024-3199
    21Monitor

    The Plus Addons for Elementor <= 5.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget

    MediumCVSS 5.4No exploitEPSS 1%

    posimyth · the plus addons for elementorMay 2, 2024

  • CVE-2024-3197
    21Monitor

    The Plus Addons for Elementor <= 5.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Attributes

    MediumCVSS 5.4No exploitEPSS 0%

    posimyth · the plus addons for elementorMay 2, 2024

  • The Plus Addons for Elementor – Elementor Addons, Page Templates, Widgets, Mega Menu, WooCommerce <= 6.1.8 - Authenticated (Contributor+) Stored Cross-Site Scri

    MediumCVSS 5.4No exploitEPSS 0%

    posimyth · the plus addons for elementorFeb 1, 2025

  • CVE-2024-3718
    21Monitor

    The Plus Addons for Elementor <= 5.5.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Progress Bar, Header Meta Content, Scroll Navigation, Pric

    MediumCVSS 5.4No exploitEPSS 0%

    posimyth · the plus addons for elementorMay 24, 2024