Vulnerabilities in Unknown
5,419 resultsVexday analysis
O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.
CVE-2022-1609CRITICALThe School Management < 9.9.7 - Unauthenticated RCE via REST apiEPSS 64.1%CVE-2023-5652—WP Hotel Booking < 2.0.8 - Unauthenticated SQLiEPSS 63.7%CVE-2023-0631—Paid Memberships Pro < 2.9.12 - Subscriber+ SQL InjectionEPSS 60.5%CVE-2021-24499—Workreap theme < 2.2.2 - Unauthenticated Upload Leading to Remote Code ExecutionEPSS 60.1%CVE-2022-1104—Popup Maker < 1.16.5 - Admin+ Stored Cross-Site ScriptingEPSS 56.4%CVE-2021-25003—WPCargo < 6.9.0 - Unauthenticated RCEEPSS 56.1%CVE-2023-0159— Extensive VC Addons for WPBakery page builder < 1.9.1 - Unauthenticated RCEEPSS 55.5%CVE-2024-11972CRITICALHunk Companion < 1.9.0 - Unauthenticated Plugin InstallationEPSS 54.5%CVE-2021-24347—SP Project & Document Manager <2 4.22 - Authenticated Shell UploadEPSS 54.1%CVE-2023-6623CRITICALEssential Blocks < 4.4.3 - Unauthenticated Local File InclusionEPSS 50.7%CVE-2025-2563HIGHUser Registration & Membership < 4.1.2- Unauthenticated Privilege EscalationEPSS 48.8%CVE-2022-0679—Narnoo Distributor <= 2.5.1 - Unauthenticated LFI to Arbitrary File Read / RCEEPSS 47.8%CVE-2021-24370—Fancy Product Designer < 4.6.9 - Unauthenticated Arbitrary File Upload and RCEEPSS 47.4%CVE-2023-2114HIGHNEX-Forms < 8.4 - Admin+ SQL InjectionEPSS 44.6%CVE-2022-3062MEDIUMSimple File List < 4.4.12 - Reflected Cross-Site ScriptingEPSS 44.1%CVE-2022-0479—Popup Builder < 4.1.1 - SQL Injection to Reflected Cross-Site ScriptingEPSS 43.8%CVE-2022-0773—Documentor <= 1.5.3 - Unauthenticated SQLiEPSS 43.3%CVE-2022-1281—Photo Gallery < 1.6.3 - Unauthenticated SQL InjectionEPSS 43.0%CVE-2022-4060CRITICALUser Post Gallery <= 2.19 - Unauthenticated RCEEPSS 42.7%CVE-2023-2796—EventON < 2.1.2 - Unauthenticated Event AccessEPSS 42.7%