verygoodplugins records
5 published records for vendor verygoodplugins.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 40%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-352 Cross-Site Request Forgery (CSRF)2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2024-27972No exploit | WordPress WP Fusion Lite plugin <= 3.41.24 - Remote Code Execution (RCE) vulnerabilityjack arturo · wp fusion lite · CWE-94 | Critical9.9 | — | 1.6% | Apr 3, 2024 |
28Monitor | CVE-2026-46555No exploit | WhatsApp MCP: Unauthenticated bridge API allows message sending and arbitrary file exfiltrationverygoodplugins · whatsapp mcp server · CWE-22 | High7.1 | — | 0.2% | Jul 20, 2026 |
24Monitor | CVE-2021-34660No exploit | WP Fusion Lite <= 3.37.18 Reflected Cross-Site Scriptingverygoodplugins · wp fusion · CWE-79 | Medium6.1 | — | 0.8% | Aug 9, 2021 |
24Monitor | CVE-2023-7202No exploit | Fatal Error Notify < 1.5.3 - Subscriber+ Test Error Email Sendingverygoodplugins · fatal error notify · CWE-352 | Medium6.1 | — | 0.2% | Feb 27, 2024 |
18Monitor | CVE-2021-34661No exploit | WP Fusion Lite <= 3.37.18 Cross-Site Request Forgery to Data Deletionverygoodplugins · wp fusion · CWE-352 | Medium4.7 | — | 0.5% | Aug 9, 2021 |
- CVE-2024-2797239Monitor
WordPress WP Fusion Lite plugin <= 3.41.24 - Remote Code Execution (RCE) vulnerability
CriticalCVSS 9.9No exploitEPSS 2%jack arturo · wp fusion liteApr 3, 2024
- CVE-2026-4655528Monitor
WhatsApp MCP: Unauthenticated bridge API allows message sending and arbitrary file exfiltration
HighCVSS 7.1No exploitEPSS 0%verygoodplugins · whatsapp mcp serverJul 20, 2026
- CVE-2021-3466024Monitor
WP Fusion Lite <= 3.37.18 Reflected Cross-Site Scripting
MediumCVSS 6.1No exploitEPSS 1%verygoodplugins · wp fusionAug 9, 2021
- CVE-2023-720224Monitor
Fatal Error Notify < 1.5.3 - Subscriber+ Test Error Email Sending
MediumCVSS 6.1No exploitEPSS 0%verygoodplugins · fatal error notifyFeb 27, 2024
- CVE-2021-3466118Monitor
WP Fusion Lite <= 3.37.18 Cross-Site Request Forgery to Data Deletion
MediumCVSS 4.7No exploitEPSS 0%verygoodplugins · wp fusionAug 9, 2021