Vulnerabilities in Unknown
5,582 resultsVexday analysis
O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.
CVE-2026-14831MEDIUMEasy Booking < 3.5.0 - Unauthenticated Minimum Booking Duration BypassEPSS 0.3%CVE-2026-16990MEDIUMPayment Button for PayPal <= 1.2.3.44 - Unauthenticated Payment Price ManipulationEPSS 0.3%CVE-2026-79706MEDIUMBreeze Cache < 2.5.13 - Unauthenticated File Creation via Cache Path TraversalEPSS 0.3%CVE-2026-17014MEDIUMWP Photo Album Plus < 9.2.07.002 - Unauthenticated Export ZIP File Deletion via delexportzipsEPSS 0.3%CVE-2026-77794MEDIUMRegistrationMagic 6.0.0.0 - 6.0.9.8 - Unauthenticated Payment Bypass via Zero QuantityEPSS 0.3%CVE-2026-87894MEDIUMRox Appointment Booking 1.0.9 - 1.2.2 - Unauthenticated Customer PII Disclosure via IDOREPSS 0.3%CVE-2026-16058MEDIUMYayCurrency < 3.3.5 - Unauthenticated Order and Vendor Financial Data Disclosure via Dokan IntegrationEPSS 0.3%CVE-2024-13306MEDIUMWP Google Map < 1.9.4 - Admin+ Stored XSSEPSS 0.3%CVE-2026-14860MEDIUMPodcast Player < 8.3.1 - Unauthenticated Server-Side Request ForgeryEPSS 0.3%CVE-2026-11565HIGHAdvanced File Manager < 5.4.13 - Authenticated Arbitrary File Read and Write via fma_load_fma_uiEPSS 0.3%CVE-2026-15255MEDIUMRegistrationMagic < 6.0.9.4 - Unauthenticated Form Submission Disclosure via IDOREPSS 0.3%CVE-2026-19709MEDIUMMembership For WooCommerce < 3.1.2 - Unauthenticated Member Data Disclosure via REST Consumer Secret BypassEPSS 0.3%CVE-2026-14832MEDIUMShopSmart Loyalty for WooCommerce <= 1.0.0 - Unauthenticated Sensitive Information Disclosure via shopsmart_check_phoneEPSS 0.3%CVE-2025-15488MEDIUMResponsive Plus < 3.4.3 - Unauthenticated Arbitrary Shortcode ExecutionEPSS 0.3%CVE-2026-14314MEDIUMPeproDev WooCommerce Receipt Uploader <= 2.8.0 - Unauthenticated Image Attachment Disclosure via IDOREPSS 0.3%CVE-2026-82125MEDIUMSchema & Structured Data for WP & AMP 1.46 - 1.65 - Unauthenticated Non-Public Comment Content Disclosure via IDOREPSS 0.3%CVE-2026-86823MEDIUMNewsletter < 9.3.7 - Unauthenticated Open Redirect and Subscriber Token Disclosure via ncu ParameterEPSS 0.3%CVE-2026-13345MEDIUMEssential Addons for Elementor - Lite < 6.6.10 - Unauthenticated Draft/Private WooCommerce Product Disclosure via Compare TableEPSS 0.3%CVE-2026-90984MEDIUMGenerate PDF using Contact Form 7 < 4.2.2 - Unauthenticated Server-Side Request Forgery via Array-Valued Form FieldEPSS 0.3%CVE-2026-82213MEDIUMNexi XPay Build 7.6.1 - 7.6.2 - Unauthenticated Saved Payment Token Disclosure via IDOREPSS 0.3%