quadlayers records
7 published records for vendor quadlayers.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 28.6%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-862 Missing Authorization2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
- CWE-284 Improper Access Control1
- CWE-352 Cross-Site Request Forgery (CSRF)1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2021-4443No exploit | WordPress Mega Menu <= 2.0.6 - Arbitrary File Creationquadlayers · quadmenu – mega menu · CWE-434 | Critical9.8 | — | 0.7% | Oct 16, 2024 |
35Monitor | CVE-2019-15779No exploit | The insta-gallery plugin before 2.4.8 for WordPress has no nonce validation for qligg_dismiss_notice or qligg_form_item_delete.quadlayers · wp social feed gallery · CWE-352 | High8.8 | — | 0.7% | Aug 29, 2019 |
30Monitor | CVE-2022-23982No exploit | WordPress Perfect Brands for WooCommerce plugin <= 2.0.4 - Server Information Exposure vulnerabilityquadlayers · perfect brands for woocommerce · CWE-200 | High7.5 | — | 1.2% | Feb 18, 2022 |
29Monitor | CVE-2023-47681No exploit | WordPress WooCommerce Checkout Manager plugin <= 7.3.0 - Broken Access Control vulnerabilityquadlayers · woocommerce checkout manager · CWE-862 | Medium6.5 | — | 9.2% | Jun 19, 2024 |
26Monitor | CVE-2024-39640No exploit | WordPress Social Feed Gallery plugin <= 4.3.9 - Broken Access Control vulnerabilityquadlayers · wp social feed gallery · CWE-862 | Medium6.5 | — | 0.4% | Nov 1, 2024 |
19Monitor | CVE-2022-2361No exploit | Social Chat < 6.0.5 - Admin+ Stored Cross-Site Scriptingquadlayers · wp social chat · CWE-79 | Medium4.8 | — | 0.6% | Aug 22, 2022 |
17Monitor | CVE-2022-23981No exploit | WordPress Perfect Brands for WooCommerce plugin <= 2.0.4 - Set Featured Brand vulnerabilityquadlayers · perfect brands for woocommerce · CWE-284 | Medium4.3 | — | 0.6% | Feb 18, 2022 |
- CVE-2021-444339Monitor
WordPress Mega Menu <= 2.0.6 - Arbitrary File Creation
CriticalCVSS 9.8No exploitEPSS 1%quadlayers · quadmenu – mega menuOct 16, 2024
- CVE-2019-1577935Monitor
The insta-gallery plugin before 2.4.8 for WordPress has no nonce validation for qligg_dismiss_notice or qligg_form_item_delete.
HighCVSS 8.8No exploitEPSS 1%quadlayers · wp social feed galleryAug 29, 2019
- CVE-2022-2398230Monitor
WordPress Perfect Brands for WooCommerce plugin <= 2.0.4 - Server Information Exposure vulnerability
HighCVSS 7.5No exploitEPSS 1%quadlayers · perfect brands for woocommerceFeb 18, 2022
- CVE-2023-4768129Monitor
WordPress WooCommerce Checkout Manager plugin <= 7.3.0 - Broken Access Control vulnerability
MediumCVSS 6.5No exploitEPSS 9%quadlayers · woocommerce checkout managerJun 19, 2024
- CVE-2024-3964026Monitor
WordPress Social Feed Gallery plugin <= 4.3.9 - Broken Access Control vulnerability
MediumCVSS 6.5No exploitEPSS 0%quadlayers · wp social feed galleryNov 1, 2024
- CVE-2022-236119Monitor
Social Chat < 6.0.5 - Admin+ Stored Cross-Site Scripting
MediumCVSS 4.8No exploitEPSS 1%quadlayers · wp social chatAug 22, 2022
- CVE-2022-2398117Monitor
WordPress Perfect Brands for WooCommerce plugin <= 2.0.4 - Set Featured Brand vulnerability
MediumCVSS 4.3No exploitEPSS 1%quadlayers · perfect brands for woocommerceFeb 18, 2022