İçeriğe atla
Noroxi

WCFM – Frontend Manager for WooCommerce

wc-frontend-manager · eklenti

WCFM – Frontend Manager for WooCommerce için bilinen güvenlik açıkları. Sitenizde bu bileşenin hangi sürümünün çalıştığını WP Lens ile saniyede öğrenin.

11 bilinen açık

son kayıt 11 Tem 2026

Güvenlik açıkları

  • CVE-2024-8290

    WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible <= 6.7.12 - Insecure Direct Object Reference to Account Takeover/Pr

    Yüksek 8.8
  • CVE-2022-4938

    WCFM Frontend Manager <= 6.5.13 - Cross-Site Request Forgery

    Yüksek 8.8
  • CVE-2022-4937

    The WCFM Frontend Manager plugin for WordPress is vulnerable to unauthorized modification and access of data in versions up to, and includin

    Yüksek 8.8
  • CVE-2026-2554

    WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible <= 6.7.25 - Authenticated (Vendor+) Insecure Direct Object Referenc

    Yüksek 8.1
  • CVE-2026-4896

    WCFM - WooCommerce Frontend Manager <= 6.7.25 - Insecure Direct Object References to Autenticated (Vendor+) Arbitrary Post/Product Manipulation

    Yüksek 8.1
  • CVE-2026-0845

    WCFM - WooCommerce Frontend Manager <= 6.7.24 - Authenticated (Shop Manager+) Arbitrary Options Update

    Yüksek 7.2
  • CVE-2025-3780

    WCFM – Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible <= 6.7.16 - Missing Authorization to Unauthenticated Plugin Setting

    Orta 6.5
  • CVE-2024-29929

    WordPress WCFM plugin <= 6.7.8 - Cross Site Scripting (XSS) vulnerability

    Orta 5.9
  • CVE-2026-12994

    WCFM – Frontend Manager for WooCommerce <= 6.7.27 - Missing Authorization to Unauthenticated Arbitrary Inquiry Reply Injection via wcfm-my-account-enquiry-manag

    Orta 5.3
  • CVE-2026-10041

    WCFM – Frontend Manager for WooCommerce <= 6.7.27 - Authenticated (Subscriber+) Missing Authorization to Arbitrary Vendor Data Manipulation via Multiple AJAX Ha

    Orta 4.3
  • CVE-2025-54004

    WordPress WCFM – Frontend Manager for WooCommerce plugin <= 6.7.24 - Broken Access Control vulnerability

    Düşük 2.7

← Dizine dön