İçeriğe atla
Noroxi

WPFactory kayıtları

wpfactory üreticisine ait 29 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
0
Düzeltme kaydı olan
%31
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

29 kayıt
  • CVE-2024-31276
    39İzleyin

    WordPress Products, Order & Customers Export for WooCommerce plugin <= 2.0.8 - Broken Access Control vulnerability

    KritikCVSS 9,8İstismar yokEPSS %0

    wpfactory · products\, order \& customers export for woocommerce9 Haz 2024

  • CVE-2024-49305
    37İzleyin

    WordPress Customer Email Verification for WooCommerce plugin <= 2.8.10 - SQL Injection vulnerability

    KritikCVSS 9,3İstismar yokEPSS %0

    wpfactory · email verification for woocommerce17 Eki 2024

  • CVE-2024-4185
    32İzleyin

    Customer Email Verification for WooCommerce <= 2.7.4 - Email Verification and Authentication Bypass due to Insufficient Randomness

    YüksekCVSS 8,1İstismar yokEPSS %1

    wpcodefactory · customer email verification for woocommerce30 Nis 2024

  • CVE-2024-13528
    30İzleyin

    Customer Email Verification for WooCommerce <= 2.9.5 - Authentication Bypass via Shortcode

    YüksekCVSS 7,5İstismar yokEPSS %0

    wpfactory · customer email verification for woocommerce12 Şub 2025

  • CVE-2024-34370
    28İzleyin

    WordPress EAN for WooCommerce plugin <= 4.8.9 - Arbitrary Option Update to Privilege Escalation vulnerability

    YüksekCVSS 7,2Kavram kanıtıEPSS %1

    wpfactory · ean for woocommerce17 May 2024

  • CVE-2024-35162
    26İzleyin

    Path traversal vulnerability exists in Download Plugins and Themes from Dashboard versions prior to 1.8.6.

    OrtaCVSS 6,5İstismar yokEPSS %1

    wpfactory llc · download plugins and themes from dashboard22 May 2024

  • CVE-2024-13525
    26İzleyin

    Customer Email Verification for WooCommerce <= 2.9.4 - Authenticated (Contributor+) Sensitive Information Exposure

    OrtaCVSS 6,5İstismar yokEPSS %0

    wpfactory · customer email verification for woocommerce15 Şub 2025

  • CVE-2024-13774
    26İzleyin

    Wishlist for WooCommerce: Multi Wishlists Per Customer <= 3.1.7 - Cross-Site Request Forgery to Cross-Site Scriping via Wishlist Name

    OrtaCVSS 6,5İstismar yokEPSS %0

    wpfactory · wishlist for woocommerce7 Mar 2025

  • CVE-2019-17239
    24İzleyin

    includes/settings/class-alg-download-plugins-settings.php in the download-plugins-dashboard plugin through 1.5.0 for WordPress has multiple

    OrtaCVSS 6,1İstismar yokEPSS %1

    wpfactory · download plugins and themes from dashboard7 Eki 2019

  • CVE-2024-10519
    24İzleyin

    Wishlist for WooCommerce: Multi Wishlists Per Customer PRO 3.0.8 - 3.1.2 - Reflected Cross-Site Scripting via wtab Parameter

    OrtaCVSS 6,1İstismar yokEPSS %1

    wpfactory · wishlist for woocommerce23 Kas 2024

  • CVE-2024-9377
    24İzleyin

    Products, Order & Customers Export for WooCommerce <= 2.0.15 - Reflected Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpfactory · products\, order \& customers export for woocommerce9 Eki 2024

  • CVE-2024-8788
    24İzleyin

    EU/UK VAT Manager for WooCommerce <= 2.12.12 - Reflected Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpfactory · eu\/uk vat manager for woocommerce27 Eyl 2024

  • CVE-2023-47547
    24İzleyin

    WordPress Products, Order & Customers Export for WooCommerce Plugin <= 2.0.7 is vulnerable to Cross Site Scripting (XSS)

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpfactory · products\, order \& customers export for woocommerce14 Kas 2023

  • CVE-2024-8656
    24İzleyin

    WPFactory Helper <= 1.7.0 - Reflected Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpfactory · wpfactory helper13 Eyl 2024

  • CVE-2023-36689
    24İzleyin

    WordPress WPFactory Helper Plugin <= 1.5.2 is vulnerable to Cross Site Scripting (XSS)

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpfactory · wpfactory helper5 Ağu 2023

  • CVE-2024-0821
    24İzleyin

    Cost of Goods Sold (COGS): Cost & Profit Calculator for WooCommerce <= 3.2.8 - Reflected Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpfactory · cost of goods for woocommerce28 Şub 2024

  • CVE-2024-9384
    24İzleyin

    Quantity Dynamic Pricing & Bulk Discounts for WooCommerce <= 3.8.0 - Reflected Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpfactory · quantity dynamic pricing \& bulk discounts for woocommerce4 Eki 2024

  • CVE-2024-9205
    24İzleyin

    Maximum Products per User for WooCommerce <= 4.2.8 - Reflected Cross-Site Scripting

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpfactory · maximum products per user for woocommerce9 Eki 2024

  • CVE-2024-44061
    24İzleyin

    WordPress EU/UK VAT Manager for WooCommerce plugin <= 2.12.14 - CSRF to Cross Site Scripting (XSS) vulnerability

    OrtaCVSS 6,1İstismar yokEPSS %0

    wpfactory · eu\/uk vat manager for woocommerce20 Eki 2024

  • CVE-2023-0062
    21İzleyin

    EAN for WooCommerce < 4.4.3 - Contributor+ Stored XSS

    OrtaCVSS 5,4İstismar yokEPSS %1

    wpfactory · ean for woocommerce6 Şub 2023

  • CVE-2024-9189
    21İzleyin

    EU/UK VAT Manager for WooCommerce <= 2.12.12 - Missing Authorization

    OrtaCVSS 5,3İstismar yokEPSS %0

    wpfactory · eu\/uk vat manager for woocommerce27 Eyl 2024

  • CVE-2023-51399
    21İzleyin

    WordPress Back Button Widget Plugin <= 1.6.3 is vulnerable to Cross Site Scripting (XSS)

    OrtaCVSS 5,4İstismar yokEPSS %0

    wpfactory · back button widget29 Ara 2023

  • CVE-2023-6892
    21İzleyin

    EAN for WooCommerce <= 4.9.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via alg_wc_ean_product_meta Shortcode

    OrtaCVSS 5,4İstismar yokEPSS %0

    wpfactory · ean for woocommerce18 Nis 2024

  • CVE-2025-48254
    21İzleyin

    WordPress Change Add to Cart Button Text for WooCommerce plugin <= 2.2.2 - Cross Site Scripting (XSS) Vulnerability

    OrtaCVSS 5,4İstismar yokEPSS %0

    wpfactory · change add to cart button text for woocommerce19 May 2025

  • CVE-2025-48252
    21İzleyin

    WordPress Back Button Widget plugin <= 1.6.8 - Cross Site Scripting (XSS) Vulnerability

    OrtaCVSS 5,4İstismar yokEPSS %0

    wpfactory · back button widget19 May 2025