Vulnerabilities in Unknown

5,428 results
Vexday analysis

O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.

CVE-2022-0165—Page Builder KingComposer <= 2.9.6 - Open RedirectEPSS 4.3%CVE-2021-24684—PDF Light Viewer < 1.4.12 - Authenticated Command InjectionEPSS 4.3%CVE-2022-2544—Ninja Job Board < 1.3.3 - Resume Disclosure via Directory ListingEPSS 4.3%CVE-2023-0600CRITICALWP Visitor Statistics (Real Time Traffic) < 6.9 - Unauthenticated SQLiEPSS 4.2%CVE-2022-1054—RSVP and Event Management < 2.7.8 - Unauthenticated Entries ExportEPSS 4.2%CVE-2022-0439—Email Subscribers & Newsletters < 5.3.2 - Subscriber+ Blind SQL injectionEPSS 4.2%CVE-2024-6205HIGHPayPlus Payment Gateway < 6.6.9 - Unauthenticated SQLiEPSS 4.1%CVE-2021-24581—Blue Admin <= 21.06.01 - CSRF to Stored Cross-Site Scripting (XSS)EPSS 4.1%CVE-2023-3134—Forminator < 1.24.4 - Reflected XSSEPSS 4.1%CVE-2022-3481CRITICALWooCommerce Dropshipping < 4.4 - Unauthenticated SQLiEPSS 3.9%CVE-2023-0037CRITICAL10WebMapBuilder < 1.0.73 - Unauthenticated SQLiEPSS 3.9%CVE-2022-3634CRITICALContact Form 7 Database Addon < 1.2.6.5 - CSV InjectionEPSS 3.9%CVE-2025-10162HIGHOrderConvo < 14 - Unauthenticated Arbitrary File ReadEPSS 3.9%CVE-2021-24335—Car Repair Services < 4.0 - Unauthenticated Reflected XSS & XFSEPSS 3.9%CVE-2022-0140—Visual Form Builder < 3.0.6 - Unauthenticated Information DisclosureEPSS 3.8%CVE-2022-0765—Loco Translate < 2.6.1 - Authenticated Stored Cross-Site ScriptingEPSS 3.8%CVE-2022-4681CRITICALHide My WP < 6.2.9 - Unauthenticated SQLiEPSS 3.8%CVE-2018-17918—Circontrol CirCarLife all versions prior to 4.3.1, authentication to the device can be bypassed by entering the URL of a specific page.EPSS 3.8%CVE-2022-3768HIGHWPSmartContracts < 1.3.12 - Author+ SQLiEPSS 3.8%CVE-2024-5488CRITICALSEOPress < 7.9 - Unauthenticated Object InjectionEPSS 3.7%