Vulnerabilities in Unknown

5,585 results
Vexday analysis

O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.

CVE-2023-4013MEDIUMGDPR Cookie Compliance < 4.12.5 - License Update/Deactivation via CSRFEPSS 0.3%CVE-2024-5448MEDIUMPayPal Pay Now, Buy Now, Donation and Cart Buttons Shortcode <= 1.7 - Contributor+ Stored XSSEPSS 0.3%CVE-2022-4888MEDIUMMultiple Plugins from Addify - Multiple CSRFEPSS 0.3%CVE-2024-3111HIGHH5P < 1.15.8 - Contributor+ Stored XSSEPSS 0.3%CVE-2024-4377MEDIUMDOP Shortcodes <= 1.2 - Contributor+ Stored XSS via ShortcodeEPSS 0.3%CVE-2024-1743MEDIUMWooCommerce Customers Manager < 29.8 - Reflected XSSEPSS 0.3%CVE-2024-13120MEDIUMProfilePress < 4.15.20 - Admin+ Stored XSSEPSS 0.3%CVE-2025-13000HIGHDB Access <= 0.8.7 - Subscriber+ SQLiEPSS 0.3%CVE-2026-12517MEDIUMFediverse Embeds < 1.5.8 - Unauthenticated SSRF via Site Info EndpointEPSS 0.3%CVE-2026-18046MEDIUMCookie Consent < 0.0.10 - Subscriber+ MaxMind License Key UpdateEPSS 0.3%CVE-2026-12516MEDIUMFediverse Embeds < 1.5.8 - Unauthenticated SSRF via Media ProxyEPSS 0.3%CVE-2024-6667MEDIUMkbucket < 4.1.5 - Reflected XSSEPSS 0.3%CVE-2022-0402MEDIUMSuperforms < 6.0.4 - Reflected Cross-Site ScriptingEPSS 0.3%CVE-2024-8397MEDIUMGDPR Cookie Consent <= 2.6.0 - Unauthenticated Stored XSSEPSS 0.3%CVE-2026-80513HIGHwpForo Forum < 3.1.6 - Subscriber+ PHP Object Injection via Profile FieldsEPSS 0.3%CVE-2022-0398—ThirstyAffiliates Affiliate Link Manager < 3.10.5 - Subscriber+ Arbitrary Affiliate Links CreationEPSS 0.3%CVE-2024-13729MEDIUMPodlove Podcast Publisher < 4.1.24 - Admin+ Stored XSSEPSS 0.3%CVE-2024-2869MEDIUMEasy Property Listings <= 3.5.3 - Admin+ Stored XSSEPSS 0.3%CVE-2025-10915CRITICALDreamer Blog <= 1.2 - Subscriber+ Arbitrary Plugin InstallationEPSS 0.3%CVE-2024-6478MEDIUMCTT Expresso para WooCommerce < 3.2.13 - Admin+ Stored XSSEPSS 0.3%