İçeriğe atla
Noroxi

wpdeveloper kayıtları

wpdeveloper üreticisine ait 137 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
1
Düzeltme kaydı olan
%32,8
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

137 kayıt
  • CVE-2024-1698
    62Bu hafta

    NotificationX – Best FOMO, Social Proof, WooCommerce Sales Popup & Notification Bar Plugin With Elementor <= 2.8.2 - Unauthenticated SQL Injection

    KritikCVSS 9,8Kavram kanıtıEPSS %78

    wpdeveloper · notificationx27 Şub 2024

  • CVE-2023-32243
    62Bu hafta

    WordPress Essential Addons for Elementor Plugin 5.4.0-5.7.1 is vulnerable to Privilege Escalation

    KritikCVSS 9,8Kavram kanıtıEPSS %76

    wpdeveloper · essential addons for elementor12 May 2023

  • CVE-2023-6623
    54Planlayın

    Essential Blocks < 4.4.3 - Unauthenticated Local File Inclusion

    KritikCVSS 9,8Kavram kanıtıEPSS %51

    wpdeveloper · essential blocks15 Oca 2024

  • CVE-2022-0349
    49Planlayın

    NotificationX < 2.3.9 - Unauthenticated Blind SQL Injection

    KritikCVSS 9,8Kavram kanıtıEPSS %34

    wpdeveloper · notificationx7 Mar 2022

  • CVE-2023-2833
    40Planlayın

    ReviewX <= 1.6.13 - Arbitrary Usermeta Update to Authenticated (Subscriber+) Privilege Escalation

    YüksekCVSS 8,8Kavram kanıtıEPSS %17

    wpdeveloper · reviewx6 Haz 2023

  • CVE-2022-0320
    40Planlayın

    Essential Addons for Elementor < 5.0.5 - Unauthenticated LFI

    KritikCVSS 9,8İstismar yokEPSS %2

    wpdeveloper · essential addons for elementor1 Şub 2022

  • CVE-2023-4402
    39İzleyin

    Essential Blocks <= 4.2.0 - Unauthenticated PHP Object Injection via products

    KritikCVSS 9,8İstismar yokEPSS %1

    wpdeveloper · essential blocks20 Eki 2023

  • CVE-2022-46809
    39İzleyin

    WordPress ReviewX Plugin <= 1.6.7 is vulnerable to CSV Injection

    KritikCVSS 9,8İstismar yokEPSS %1

    wpdeveloper · reviewx7 Kas 2023

  • CVE-2024-43328
    39İzleyin

    WordPress EmbedPress plugin <= 4.0.9 - Local File Inclusion vulnerability

    KritikCVSS 9,8İstismar yokEPSS %0

    wpdeveloper · embedpress19 Ağu 2024

  • CVE-2024-43323
    39İzleyin

    WordPress ReviewX plugin <= 1.6.28 - Broken Access Control vulnerability

    KritikCVSS 9,8İstismar yokEPSS %0

    wpdeveloper · reviewx1 Kas 2024

  • CVE-2024-31284
    39İzleyin

    WordPress EmbedPress plugin <= 3.9.8 - Broken Access Control vulnerability

    KritikCVSS 9,8İstismar yokEPSS %0

    wpdeveloper · embedpress9 Haz 2024

  • CVE-2021-24356
    36İzleyin

    Simple 301 Redirects by BetterLinks - 2.0.0 – 2.0.3 - Arbitrary Plugin Activation

    YüksekCVSS 8,8Kavram kanıtıEPSS %3

    wpdeveloper · simple 301 redirects14 Haz 2021

  • CVE-2024-30226
    36İzleyin

    WordPress BetterDocs plugin <= 3.3.3 - Unauthenticated PHP Object Injection vulnerability

    KritikCVSS 9,0İstismar yokEPSS %1

    wpdeveloper · betterdocs28 Mar 2024

  • CVE-2021-24354
    35İzleyin

    Simple 301 Redirects by BetterLinks - 2.0.0-2.0.3 - Arbitrary Plugin Installation

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpdeveloper · simple 301 redirects14 Haz 2021

  • CVE-2021-24352
    35İzleyin

    Simple 301 Redirects by BetterLinks - 2.0.0 – 2.0.3 - Unauthenticated Redirect Export

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpdeveloper · simple 301 redirects14 Haz 2021

  • CVE-2021-24353
    35İzleyin

    Simple 301 Redirects by BetterLinks - 2.0.0 – 2.0.3 - Unauthenticated Redirect Import

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpdeveloper · simple 301 redirects14 Haz 2021

  • CVE-2023-26325
    35İzleyin

    The 'rx_export_review' action in the ReviewX WordPress Plugin, is affected by an authenticated SQL injection vulnerability in the 'filterVal

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpdeveloper · reviewx23 Şub 2023

  • CVE-2023-41955
    35İzleyin

    WordPress Essential Addons for Elementor plugin <= 5.8.8 - Contributor+ Privilege Escalation vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpdeveloper · essential addons for elementor17 May 2024

  • CVE-2024-3018
    35İzleyin

    Essential Addons for Elementor <= 5.9.13 - Authenticated (Author+) PHP Object Injection via error_resetpassword

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpdeveloper · essential addons for elementor30 Mar 2024

  • CVE-2017-18504
    35İzleyin

    The twitter-cards-meta plugin before 2.5.0 for WordPress has CSRF.

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpdeveloper · twitter cards meta12 Ağu 2019

  • CVE-2023-51359
    35İzleyin

    WordPress Essential Blocks plugin <= 4.2.0 - Multiple Contributor+ Broken Access Control vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpdeveloper · essential blocks9 Ara 2024

  • CVE-2023-51360
    35İzleyin

    WordPress Essential Blocks plugin <= 4.2.0 - Multiple Subscriber+ Broken Access Control vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpdeveloper · essential blocks9 Ara 2024

  • CVE-2024-43129
    35İzleyin

    WordPress BetterDocs plugin <= 3.5.8 - Local File Inclusion vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpdeveloper · betterdocs13 Ağu 2024

  • CVE-2021-4447
    35İzleyin

    Essential Addons for Elementor <= 4.6.4 - Authenticated (Contributor+) Privilege Escalation

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpdeveloper · essential addons for elementor16 Eki 2024

  • CVE-2024-38707
    35İzleyin

    WordPress EmbedPress plugin <= 4.0.4 - Broken Access Control vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpdeveloper · embedpress1 Kas 2024