İçeriğe atla
Noroxi

WPExperts kayıtları

wpexperts üreticisine ait 50 yayımlanmış kayıt.

Tüm kayıtlar

50 kayıt
  • CVE-2023-6875
    66Bu hafta

    POST SMTP Mailer – Email log, Delivery Failure Notifications and Best Mail SMTP for WordPress <= 2.8.7 - Authorization Bypass via type connect-app API

    KritikCVSS 9,8SilahlaştırılmışEPSS %90

    wpexperts · post smtp11 Oca 2024

  • CVE-2024-52403
    39İzleyin

    WordPress User Management plugin <= 1.1 - Arbitrary File Upload vulnerability

    KritikCVSS 9,9İstismar yokEPSS %0

    saad iqbal · user management16 Kas 2024

  • CVE-2023-52233
    39İzleyin

    WordPress POST SMTP Mailer plugin <= 2.8.6 - Broken Access Control on API vulnerability

    KritikCVSS 9,8İstismar yokEPSS %0

    wpexperts · post smtp11 Haz 2024

  • CVE-2021-24755
    35İzleyin

    myCred < 2.3 - Subscriber+ SQL Injection

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpexperts · mycred29 Kas 2021

  • CVE-2019-25150
    35İzleyin

    Email Templates <= 1.3 - HTML Injection

    YüksekCVSS 8,8İstismar yokEPSS %1

    wpexperts · email templates6 Haz 2023

  • CVE-2023-3179
    35İzleyin

    POST SMTP Mailer < 2.5.7 - Account Takeover via CSRF

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpexperts · post smtp17 Tem 2023

  • CVE-2025-22800
    35İzleyin

    WordPress Post SMTP plugin <= 2.9.11 - Broken Access Control vulnerability

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpexperts · post smtp13 Oca 2025

  • CVE-2022-47181
    35İzleyin

    WordPress Email Templates Plugin <= 1.4.2 is vulnerable to Cross Site Request Forgery (CSRF)

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpexperts · email templates customizer and designer7 Kas 2023

  • CVE-2023-35096
    35İzleyin

    WordPress myCred Plugin <= 2.5 is vulnerable to Cross Site Request Forgery (CSRF)

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpexperts · mycred17 Tem 2023

  • CVE-2023-35038
    35İzleyin

    WordPress WP PDF Generator Plugin <= 1.2.2 is vulnerable to Cross Site Request Forgery (CSRF)

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpexperts · wp pdf generator17 Tem 2023

  • CVE-2023-50902
    35İzleyin

    WordPress New User Approve Plugin <= 2.5.1 is vulnerable to Cross Site Request Forgery (CSRF)

    YüksekCVSS 8,8İstismar yokEPSS %0

    wpexperts · new user approve29 Ara 2023

  • CVE-2023-6620
    32İzleyin

    Post SMTP < 2.8.7 - Admin+ SQL Injection

    YüksekCVSS 7,2İstismar yokEPSS %14

    wpexperts · post smtp15 Oca 2024

  • CVE-2023-3604
    30İzleyin

    Change WP Admin < 1.1.4 - Secret Login Page Disclosure

    YüksekCVSS 7,5İstismar yokEPSS %1

    wpexperts · all in one login21 Ağu 2023

  • CVE-2022-1589
    30İzleyin

    Change wp-admin Login < 1.1.0 - Unauthenticated Arbitrary Settings Update

    YüksekCVSS 7,5İstismar yokEPSS %1

    wpexperts · all in one login30 May 2022

  • CVE-2022-2352
    28İzleyin

    Post SMTP < 2.1.7 - Admin+ Blind SSRF

    YüksekCVSS 7,2İstismar yokEPSS %1

    wpexperts · post smtp26 Eyl 2022

  • CVE-2023-48742
    28İzleyin

    WordPress License Manager for WooCommerce Plugin <= 2.2.10 is vulnerable to SQL Injection

    YüksekCVSS 7,2İstismar yokEPSS %1

    wpexperts · license manager for woocommerce30 Kas 2023

  • CVE-2024-5207
    28İzleyin

    POST SMTP Mailer – Email log, Delivery Failure Notifications and Best Mail SMTP for WordPress <= 2.9.3 - Authenticated (Administrator+) SQL Injection

    YüksekCVSS 7,2İstismar yokEPSS %0

    wpexperts · post smtp30 May 2024

  • CVE-2024-52436
    28İzleyin

    WordPress Post SMTP plugin <= 2.9.9 - SQL Injection vulnerability

    YüksekCVSS 7,2İstismar yokEPSS %0

    wpexperts · post smtp18 Kas 2024

  • CVE-2024-13713
    26İzleyin

    WPExperts Square For GiveWP <= 1.3.1 - Authenticated (Subscriber+) SQL Injection

    OrtaCVSS 6,5İstismar yokEPSS %0

    wpexperts · givewp square21 Şub 2025

  • CVE-2024-1639
    26İzleyin

    License Manager for WooCommerce <= 3.0.6 - Improper Authorization to Authenticated(Contributor+) Sensitive Information Exposure

    OrtaCVSS 6,5İstismar yokEPSS %0

    wpexperts · license manager for woocommerce20 Haz 2024

  • CVE-2023-5958
    24İzleyin

    POST SMTP Mailer < 2.7.1 - Unauthenticated Cross-site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %1

    wpexperts · post smtp27 Kas 2023

  • CVE-2023-3082
    24İzleyin

    Post SMTP <= 2.5.7 - Unauthenticated Stored Cross-Site Scripting via Email

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpexperts · post smtp12 Tem 2023

  • CVE-2023-6629
    24İzleyin

    POST SMTP Mailer <= 2.8.6 - Reflected Cross-Site Scripting via msg

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpexperts · post smtp3 Oca 2024

  • CVE-2023-6621
    24İzleyin

    Post SMTP < 2.8.7 - Reflected Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpexperts · post smtp3 Oca 2024

  • CVE-2024-29128
    24İzleyin

    WordPress POST SMTP Mailer plugin <= 2.8.6 - Reflected Cross Site Scripting (XSS) vulnerability

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpexperts · post smtp19 Mar 2024