İçeriğe atla
Noroxi

wpchill kayıtları

wpchill üreticisine ait 47 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%27,7
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

47 kayıt
  • CVE-2021-23174
    44Planlayın

    WordPress Download Monitor plugin <= 4.4.6 - Auth. Stored Cross-Site Scripting (XSS) vulnerability

    OrtaCVSS 4,8İstismar yokEPSS %84

    wpchill · download monitor28 Oca 2022

  • CVE-2022-45354
    41Planlayın

    WordPress Download Monitor Plugin <= 4.7.60 is vulnerable to Sensitive Data Exposure

    YüksekCVSS 7,5Kavram kanıtıEPSS %38

    wpchill · download monitor8 Oca 2024

  • CVE-2023-34007
    35İzleyin

    WordPress Download Monitor Plugin <= 4.8.3 is vulnerable to Arbitrary File Upload

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpchill · download monitor20 Ara 2023

  • CVE-2024-12853
    35İzleyin

    Modula Image Gallery <= 2.11.10 - Authenticated (Author+) Arbitrary File Upload

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpchill · modula image gallery8 Oca 2025

  • CVE-2024-47362
    35İzleyin

    WordPress Strong Testimonials plugin <= 3.1.16 - Broken Access Control vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpchill · strong testimonials1 Kas 2024

  • CVE-2024-49256
    35İzleyin

    WordPress Htaccess File Editor plugin <= 1.0.18 - Broken Access Control vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpchill · htaccess file editor1 Kas 2024

  • CVE-2022-36292
    35İzleyin

    WordPress Gallery PhotoBlocks plugin <= 1.2.6 - Cross-Site Request Forgery (CSRF) vulnerabilities

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpchill · gallery photoblocks23 Ağu 2022

  • CVE-2023-52123
    35İzleyin

    WordPress Strong Testimonials Plugin <= 3.1.10 is vulnerable to Cross Site Request Forgery (CSRF)

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpchill · strong testimonials5 Oca 2024

  • CVE-2021-24786
    33İzleyin

    Download Monitor < 4.4.5 - Admin+ SQL Injection

    YüksekCVSS 7,2Kavram kanıtıEPSS %17

    wpchill · download monitor3 Oca 2022

  • CVE-2022-4972
    30İzleyin

    Download Monitor <= 4.7.51 - Missing Authorization to Unauthenticated Data Export

    YüksekCVSS 7,5İstismar yokEPSS %0

    wpchill · download monitor16 Eki 2024

  • CVE-2024-11282
    30İzleyin

    Passster – Password Protect Pages and Content <= 4.2.10 - Unauthenticated Content Restriction Bypass to Sensitive Information Exposure

    YüksekCVSS 7,5İstismar yokEPSS %0

    wpchill · passster7 Oca 2025

  • CVE-2021-24774
    28İzleyin

    Check & Log Email < 1.0.3 - Admin+ SQL Injections

    YüksekCVSS 7,2İstismar yokEPSS %1

    wpchill · check \& log email25 Eki 2021

  • CVE-2025-13645
    28İzleyin

    Modula 2.13.1 - 2.13.2 - Authenticated (Author+) Arbitrary File Deletion

    YüksekCVSS 7,2İstismar yokEPSS %1

    wpchill · modula image gallery2 Ara 2025

  • CVE-2024-30501
    28İzleyin

    WordPress Download Monitor theme <= 4.9.4 - Auth. SQL Injection vulnerability

    YüksekCVSS 7,2İstismar yokEPSS %1

    wpchill · download monitor29 Mar 2024

  • CVE-2021-31567
    27İzleyin

    WordPress Download Monitor plugin <= 4.4.6 - Authenticated Arbitrary File Download vulnerability

    OrtaCVSS 6,8İstismar yokEPSS %1

    wpchill · download monitor28 Oca 2022

  • CVE-2024-3710
    27İzleyin

    Image Photo Gallery Final Tiles Grid < 3.6.0 - Contributor+ Stored XSS

    OrtaCVSS 6,8İstismar yokEPSS %0

    wpchill · image photo gallery final tiles grid13 Tem 2024

  • CVE-2025-13646
    26İzleyin

    Modula 2.13.1 - 2.13.2 - Authenticated (Author+) Arbitrary File Upload via Race Condition

    OrtaCVSS 6,6İstismar yokEPSS %1

    wpchill · modula image gallery2 Ara 2025

  • CVE-2020-8549
    25İzleyin

    Stored XSS in the Strong Testimonials plugin before 2.40.1 for WordPress can result in an attacker performing malicious actions such as stea

    OrtaCVSS 6,1İstismar yokEPSS %2

    wpchill · strong testimonials3 Şub 2020

  • CVE-2022-1547
    24İzleyin

    Check & Log email < 1.0.6 - Reflected Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %1

    wpchill · check \& log email23 May 2022

  • CVE-2021-24908
    24İzleyin

    Check & Log Email < 1.0.4 - Reflected Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %1

    wpchill · check \& log email29 Kas 2021

  • CVE-2022-27852
    24İzleyin

    WordPress KB Support plugin <= 1.5.5 - Multiple Unauth. Stored Cross-Site Scripting (XSS) vulnerabilities

    OrtaCVSS 6,1İstismar yokEPSS %1

    wpchill · kb support15 Nis 2022

  • CVE-2022-1054
    22İzleyin

    RSVP and Event Management < 2.7.8 - Unauthenticated Entries Export

    OrtaCVSS 5,3Kavram kanıtıEPSS %4

    wpchill · rsvp and event management18 Nis 2022

  • CVE-2020-9003
    21İzleyin

    A stored XSS vulnerability exists in the Modula Image Gallery plugin before 2.2.5 for WordPress.

    OrtaCVSS 5,4İstismar yokEPSS %1

    wpchill · modula image gallery20 Şub 2020

  • CVE-2022-37407
    21İzleyin

    WordPress Gallery PhotoBlocks plugin <= 1.2.6 - Multiple Authenticated Stored Cross-Site Scripting (XSS) vulnerabilities

    OrtaCVSS 5,4İstismar yokEPSS %1

    wpchill · gallery photoblocks9 Eyl 2022

  • CVE-2021-36920
    21İzleyin

    WordPress plugin Download Monitor <= 4.4.6 - Authenticated Reflected Cross-Site Scripting (XSS) vulnerability

    OrtaCVSS 5,4İstismar yokEPSS %1

    wpchill · download monitor14 Oca 2022