Vulnerabilities in Unknown
5,585 resultsVexday analysis
O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.
CVE-2025-3516MEDIUMSimple Lightbox < 2.9.4 - Contributor+ Stored XSSEPSS 0.3%CVE-2026-16591HIGHWP Directory Kit < 1.5.8 - Listing Admin+ Stored XSS via Category and Location Title and Icon FieldsEPSS 0.3%CVE-2026-13598CRITICALRestrictMate < 1.3.0 - Unauthenticated Privilege Escalation to AdministratorEPSS 0.3%CVE-2026-19085LOWCopy & Delete Posts < 1.5.6 - Author+ Password-Protected Post Content DisclosureEPSS 0.3%CVE-2026-16274LOWClassified Listing < 5.4.4 - Contributor+ Unpublished Post Content Disclosure via rtcl_block_css_get_postsEPSS 0.3%CVE-2026-16276LOWClassified Listing < 5.4.4 - Contributor+ Store Revenue Total Disclosure via rtcl_revenue_order_searchEPSS 0.3%CVE-2026-16957LOWSlim SEO < 4.9.11 - Contributor+ Arbitrary Post Meta DisclosureEPSS 0.3%CVE-2026-78150LOWPost Carousel 4.0.0 - 4.0.7 - Contributor+ Private and Protected Post Content Disclosure via saved-templates-duplicate IDOREPSS 0.3%CVE-2026-12906LOWRTMKit Addons for Elementor < 2.0.9 - Contributor+ Private Post Title DisclosureEPSS 0.3%CVE-2024-8187MEDIUMSmart Post Show <= 3.0.0 - Editor+ Stored XSSEPSS 0.3%CVE-2026-81200LOWMasterStudy LMS < 3.7.42 - Instructor+ Cross-Tenant Order Billing PII Disclosure via IDOREPSS 0.3%CVE-2026-88844LOWMasterStudy LMS 3.6.2 - < 3.7.50 - Instructor+ Student PII Disclosure via IDOREPSS 0.3%CVE-2026-11867MEDIUMFrontend Admin by DynamiApps < 3.29.7 - Subscriber+ Taxonomy Term Creation/Modification/Deletion via Missing AuthorizationEPSS 0.3%CVE-2026-19711MEDIUMPremium Packages – Sell Digital Products Securely < 7.0.7 - Subscriber+ Arbitrary Amount Withdrawal RequestEPSS 0.3%CVE-2024-6798MEDIUMDL Verification <= 1.2 - Admin+ Stored XSSEPSS 0.3%CVE-2026-81428MEDIUMWC Vendors < 2.7.2.1 - Vendor+ Cross-Vendor Product and Arbitrary Post Modification via IDOREPSS 0.3%CVE-2024-6693MEDIUMWP Content Copy Protection & No Right Click (premium) <= 15.0 - Admin+ Stored XSSEPSS 0.3%CVE-2026-77785LOWRank Math SEO < 1.0.277 - Author+ Non-Public Post Content Disclosure via Abilities APIEPSS 0.3%CVE-2026-75861MEDIUMUltimate Gift Cards for WooCommerce < 3.2.10 - Subscriber+ Gift Card Theft and Destruction via Unauthorized RedemptionEPSS 0.3%CVE-2024-6462MEDIUMDL Yandex Metrika <= 1.2 - Admin+ Stored XSSEPSS 0.3%