pluginus kayıtları
pluginus üreticisine ait 88 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 7
- Düzeltme kaydı olan
- %43,2
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')31
- CWE-352 Cross-Site Request Forgery (CSRF)21
- CWE-862 Missing Authorization14
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')6
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')5
- CWE-94 Improper Control of Generation of Code ('Code Injection')5
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
88 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
56Planlayın | CVE-2025-1661Kavram kanıtı | HUSKY – Products Filter Professional for WooCommerce <= 1.3.6.5 - Unauthenticated Local File Inclusionpluginus · husky - products filter professional for woocommerce · CWE-22 | Kritik9,8 | — | %56,4 | 11 Mar 2025 |
42Planlayın | CVE-2022-4063Kavram kanıtı | InPost Gallery < 2.1.4.1 - Unauthenticated LFI to RCEpluginus · inpost gallery · CWE-22 | Kritik9,8 | — | %9,5 | 19 Ara 2022 |
39İzleyin | CVE-2024-50450Kavram kanıtı | WordPress MDTF – Meta Data and Taxonomies Filter plugin <= 1.3.3.4 - Bypass Vulnerability vulnerabilitypluginus · wordpress meta data and taxonomies filter · CWE-94 | Kritik9,8 | — | %1,2 | 28 Eki 2024 |
39İzleyin | CVE-2023-51505İstismar yok | WordPress Active Products Tables for WooCommerce Plugin <= 1.0.6 is vulnerable to PHP Object Injectionpluginus · woot · CWE-502 | Kritik9,8 | — | %0,6 | 29 Ara 2023 |
39İzleyin | CVE-2023-40010İstismar yok | WordPress HUSKY – Products Filter for WooCommerce (formerly WOOF) Plugin <= 1.3.4.2 is vulnerable to SQL Injectionpluginus · husky - products filter professional for woocommerce · CWE-89 | Kritik9,8 | — | %0,6 | 20 Ara 2023 |
39İzleyin | CVE-2024-8624İstismar yok | MDTF – Meta Data and Taxonomies Filter <= 1.3.3.3 - Authenticated (Contributor+) SQL Injectionpluginus · wordpress meta data and taxonomies filter · CWE-89 | Kritik9,9 | — | %0,5 | 23 Eyl 2024 |
36İzleyin | CVE-2024-6457İstismar yok | HUSKY - Products Filter Professional for WooCommerce <= 1.3.6 - Unauthenticated Time-Based SQL Injectionpluginus · husky - products filter professional for woocommerce · CWE-89 | Yüksek7,5 | — | %19,7 | 16 Tem 2024 |
35İzleyin | CVE-2021-24566İstismar yok | WooCommerce Currency Switcher < 1.3.7 - Authenticated (Low Privilege) Local File Inclusionpluginus · fox - currency switcher professional for woocommerce · CWE-22 | Yüksek8,8 | — | %1,3 | 16 Oca 2024 |
35İzleyin | CVE-2021-20781İstismar yok | Cross-site request forgery (CSRF) vulnerability in WordPress Meta Data Filter & Taxonomies Filter versions prior to v.1.2.8 and versions pripluginus · wordpress meta data and taxonomies filter · CWE-352 | Yüksek8,8 | — | %0,8 | 13 Tem 2021 |
35İzleyin | CVE-2024-32680İstismar yok | WordPress HUSKY plugin <= 1.3.5.2 - Remote Code Execution (RCE) vulnerabilitypluginus · husky - products filter professional for woocommerce · CWE-22 | Yüksek8,8 | — | %0,7 | 17 May 2024 |
35İzleyin | CVE-2024-52396İstismar yok | WordPress WOLF plugin <= 1.0.8.3 - CSV Limited Path Traversal vulnerabilitypluginus · wolf - wordpress posts bulk editor and products manager professional · CWE-22 | Yüksek8,8 | — | %0,6 | 14 Kas 2024 |
35İzleyin | CVE-2024-1795İstismar yok | HUSKY – Products Filter for WooCommerce Professional <= 1.3.5.2 - Authenticated (Contributor+) SQL Injectionpluginus · husky - products filter professional for woocommerce · CWE-89 | Yüksek8,8 | — | %0,6 | 15 Mar 2024 |
35İzleyin | CVE-2023-40334İstismar yok | WordPress HUSKY plugin <= 1.3.4.2 - Broken Access Control vulnerabilitypluginus · husky - products filter professional for woocommerce · CWE-862 | Yüksek8,8 | — | %0,5 | 13 Ara 2024 |
35İzleyin | CVE-2023-4920İstismar yok | BEAR <= 1.1.3.3 - Cross-Site Request Forgery to Stored Cross-Site Scriptingpluginus · bear - woocommerce bulk editor and products manager professional · CWE-352 | Yüksek8,8 | — | %0,4 | 20 Eki 2023 |
35İzleyin | CVE-2024-32818İstismar yok | WordPress MDTF – Meta Data and Taxonomies Filter plugin <= 1.3.3 - Broken Access Control vulnerabilitypluginus · wordpress meta data and taxonomies filter · CWE-862 | Yüksek8,8 | — | %0,3 | 9 Haz 2024 |
35İzleyin | CVE-2023-33314İstismar yok | WordPress BEAR Plugin <= 1.1.3.1 is vulnerable to Cross Site Request Forgery (CSRF)pluginus · bear - woocommerce bulk editor and products manager professional · CWE-352 | Yüksek8,8 | — | %0,3 | 28 May 2023 |
35İzleyin | CVE-2023-46152İstismar yok | WordPress WOLF Plugin <= 1.0.7.1 is vulnerable to Cross Site Request Forgery (CSRF)pluginus · wolf - wordpress posts bulk editor and products manager professional · CWE-352 | Yüksek8,8 | — | %0,3 | 25 Eki 2023 |
35İzleyin | CVE-2023-34028İstismar yok | WordPress WOLF Plugin <= 1.0.7 is vulnerable to Cross Site Request Forgery (CSRF)pluginus · wolf - wordpress posts bulk editor and manager professional · CWE-352 | Yüksek8,8 | — | %0,3 | 22 Haz 2023 |
35İzleyin | CVE-2023-49834İstismar yok | WordPress WOOCS – WooCommerce Currency Switcher Plugin <= 1.4.1.4 is vulnerable to Cross Site Request Forgery (CSRF)pluginus · fox - currency switcher professional for woocommerce · CWE-352 | Yüksek8,8 | — | %0,3 | 17 Ara 2023 |
35İzleyin | CVE-2024-30456İstismar yok | WordPress WPCS – WordPress Currency Switcher Professional plugin <=1.2.0.1 - Cross Site Request Forgery (CSRF) vulnerabilitypluginus · wordpress currency switcher · CWE-352 | Yüksek8,8 | — | %0,2 | 29 Mar 2024 |
35İzleyin | CVE-2024-30457İstismar yok | WordPress MDTF plugin <= 1.3.3.1 - Cross Site Request Forgery (CSRF) vulnerabilitypluginus · wordpress meta data and taxonomies filter · CWE-352 | Yüksek8,8 | — | %0,2 | 29 Mar 2024 |
35İzleyin | CVE-2024-30458İstismar yok | WordPress FOX – Currency Switcher Professional for WooCommerce plugin <= 1.4.1.7 - Cross Site Request Forgery (CSRF) vulnerabilitypluginus · fox - currency switcher professional for woocommerce · CWE-352 | Yüksek8,8 | — | %0,2 | 29 Mar 2024 |
35İzleyin | CVE-2024-30462İstismar yok | WordPress HUSKY plugin <= 1.3.5.1 - Cross Site Request Forgery (CSRF) vulnerabilitypluginus · husky - products filter professional for woocommerce · CWE-352 | Yüksek8,8 | — | %0,2 | 29 Mar 2024 |
35İzleyin | CVE-2023-50861İstismar yok | WordPress HUSKY plugin <= 1.3.4.3 - Cross Site Request Forgery (CSRF) vulnerabilitypluginus · husky - products filter professional for woocommerce · CWE-352 | Yüksek8,8 | — | %0,2 | 15 Mar 2024 |
35İzleyin | CVE-2024-31430İstismar yok | Cross-Site Request Forgery (CSRF) vulnerability in realmag777 BEAR and WOLF WordPress pluginspluginus · bear - woocommerce bulk editor and products manager professional · CWE-352 | Yüksek8,8 | — | %0,2 | 10 Nis 2024 |
- CVE-2025-166156Planlayın
HUSKY – Products Filter Professional for WooCommerce <= 1.3.6.5 - Unauthenticated Local File Inclusion
KritikCVSS 9,8Kavram kanıtıEPSS %56pluginus · husky - products filter professional for woocommerce11 Mar 2025
- CVE-2022-406342Planlayın
InPost Gallery < 2.1.4.1 - Unauthenticated LFI to RCE
KritikCVSS 9,8Kavram kanıtıEPSS %10pluginus · inpost gallery19 Ara 2022
- CVE-2024-5045039İzleyin
WordPress MDTF – Meta Data and Taxonomies Filter plugin <= 1.3.3.4 - Bypass Vulnerability vulnerability
KritikCVSS 9,8Kavram kanıtıEPSS %1pluginus · wordpress meta data and taxonomies filter28 Eki 2024
- CVE-2023-5150539İzleyin
WordPress Active Products Tables for WooCommerce Plugin <= 1.0.6 is vulnerable to PHP Object Injection
KritikCVSS 9,8İstismar yokEPSS %1pluginus · woot29 Ara 2023
- CVE-2023-4001039İzleyin
WordPress HUSKY – Products Filter for WooCommerce (formerly WOOF) Plugin <= 1.3.4.2 is vulnerable to SQL Injection
KritikCVSS 9,8İstismar yokEPSS %1pluginus · husky - products filter professional for woocommerce20 Ara 2023
- CVE-2024-862439İzleyin
MDTF – Meta Data and Taxonomies Filter <= 1.3.3.3 - Authenticated (Contributor+) SQL Injection
KritikCVSS 9,9İstismar yokEPSS %0pluginus · wordpress meta data and taxonomies filter23 Eyl 2024
- CVE-2024-645736İzleyin
HUSKY - Products Filter Professional for WooCommerce <= 1.3.6 - Unauthenticated Time-Based SQL Injection
YüksekCVSS 7,5İstismar yokEPSS %20pluginus · husky - products filter professional for woocommerce16 Tem 2024
- CVE-2021-2456635İzleyin
WooCommerce Currency Switcher < 1.3.7 - Authenticated (Low Privilege) Local File Inclusion
YüksekCVSS 8,8İstismar yokEPSS %1pluginus · fox - currency switcher professional for woocommerce16 Oca 2024
- CVE-2021-2078135İzleyin
Cross-site request forgery (CSRF) vulnerability in WordPress Meta Data Filter & Taxonomies Filter versions prior to v.1.2.8 and versions pri
YüksekCVSS 8,8İstismar yokEPSS %1pluginus · wordpress meta data and taxonomies filter13 Tem 2021
- CVE-2024-3268035İzleyin
WordPress HUSKY plugin <= 1.3.5.2 - Remote Code Execution (RCE) vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1pluginus · husky - products filter professional for woocommerce17 May 2024
- CVE-2024-5239635İzleyin
WordPress WOLF plugin <= 1.0.8.3 - CSV Limited Path Traversal vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1pluginus · wolf - wordpress posts bulk editor and products manager professional14 Kas 2024
- CVE-2024-179535İzleyin
HUSKY – Products Filter for WooCommerce Professional <= 1.3.5.2 - Authenticated (Contributor+) SQL Injection
YüksekCVSS 8,8İstismar yokEPSS %1pluginus · husky - products filter professional for woocommerce15 Mar 2024
- CVE-2023-4033435İzleyin
WordPress HUSKY plugin <= 1.3.4.2 - Broken Access Control vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · husky - products filter professional for woocommerce13 Ara 2024
- CVE-2023-492035İzleyin
BEAR <= 1.1.3.3 - Cross-Site Request Forgery to Stored Cross-Site Scripting
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · bear - woocommerce bulk editor and products manager professional20 Eki 2023
- CVE-2024-3281835İzleyin
WordPress MDTF – Meta Data and Taxonomies Filter plugin <= 1.3.3 - Broken Access Control vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · wordpress meta data and taxonomies filter9 Haz 2024
- CVE-2023-3331435İzleyin
WordPress BEAR Plugin <= 1.1.3.1 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · bear - woocommerce bulk editor and products manager professional28 May 2023
- CVE-2023-4615235İzleyin
WordPress WOLF Plugin <= 1.0.7.1 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · wolf - wordpress posts bulk editor and products manager professional25 Eki 2023
- CVE-2023-3402835İzleyin
WordPress WOLF Plugin <= 1.0.7 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · wolf - wordpress posts bulk editor and manager professional22 Haz 2023
- CVE-2023-4983435İzleyin
WordPress WOOCS – WooCommerce Currency Switcher Plugin <= 1.4.1.4 is vulnerable to Cross Site Request Forgery (CSRF)
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · fox - currency switcher professional for woocommerce17 Ara 2023
- CVE-2024-3045635İzleyin
WordPress WPCS – WordPress Currency Switcher Professional plugin <=1.2.0.1 - Cross Site Request Forgery (CSRF) vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · wordpress currency switcher29 Mar 2024
- CVE-2024-3045735İzleyin
WordPress MDTF plugin <= 1.3.3.1 - Cross Site Request Forgery (CSRF) vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · wordpress meta data and taxonomies filter29 Mar 2024
- CVE-2024-3045835İzleyin
WordPress FOX – Currency Switcher Professional for WooCommerce plugin <= 1.4.1.7 - Cross Site Request Forgery (CSRF) vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · fox - currency switcher professional for woocommerce29 Mar 2024
- CVE-2024-3046235İzleyin
WordPress HUSKY plugin <= 1.3.5.1 - Cross Site Request Forgery (CSRF) vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · husky - products filter professional for woocommerce29 Mar 2024
- CVE-2023-5086135İzleyin
WordPress HUSKY plugin <= 1.3.4.3 - Cross Site Request Forgery (CSRF) vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · husky - products filter professional for woocommerce15 Mar 2024
- CVE-2024-3143035İzleyin
Cross-Site Request Forgery (CSRF) vulnerability in realmag777 BEAR and WOLF WordPress plugins
YüksekCVSS 8,8İstismar yokEPSS %0pluginus · bear - woocommerce bulk editor and products manager professional10 Nis 2024