Vulnerabilities in Unknown
5,591 resultsVexday analysis
O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.
CVE-2026-9833HIGHTag Groups < 2.2.0 - Reflected XSS via 'tag_groups_task' ParameterEPSS 0.3%CVE-2026-81404HIGHIPGP Visitors Origin < 1.6 - Reflected XSSEPSS 0.3%CVE-2026-91014HIGHRealtyna Organic IDX plugin + WPL Real Estate < 5.4.2 - Reflected XSS via Location Selector EndpointEPSS 0.3%CVE-2026-8089HIGHweMail < 2.1.3 - Reflected Cross-Site ScriptingEPSS 0.3%CVE-2026-12978HIGHFunnelKit < 3.15.0.6 - Reflected XSS via Divi Optin FormEPSS 0.3%CVE-2026-13725HIGHDynamic Pricing With Discount Rules for WooCommerce < 5.0.0 - Reflected XSS via wdpAjaxEPSS 0.3%CVE-2025-4133MEDIUMBlog2Social: Social Media Auto Post & Scheduler < 8.4.0 - Contributor+ Stored XSSEPSS 0.3%CVE-2025-15690MEDIUMContent Mask 1.7.1 - 1.8.5.5 - Contributor+ Stored XSS via Post Scripts and StylesEPSS 0.3%CVE-2026-77787LOWRank Math SEO < 1.0.277 - Author+ Term Metadata Update and Cross-Object Post Title Overwrite via updateMetaBulkEPSS 0.3%CVE-2026-77704LOWAmelia 1.2.32 - 2.4.8 - Amelia Customer+ Appointment Status Update and Self-ApprovalEPSS 0.3%CVE-2024-5473MEDIUM Simple Photoswipe <= 0.1 - Admin+ Stored XSSEPSS 0.3%CVE-2026-14821LOWQuiz And Survey Master < 11.1.5 - Contributor+ Arbitrary Template DeletionEPSS 0.3%CVE-2026-13173LOWEventin < 4.1.21 - Contributor+ User Role and Meta Modification via Speaker CreationEPSS 0.3%CVE-2026-14825LOWQuiz And Survey Master < 11.2.4 - Contributor+ Arbitrary Quiz Text Settings Update via IDOREPSS 0.3%CVE-2023-0497MEDIUMHT Portfolio < 1.1.6 - Arbitrary Plugin Activation via CSRFEPSS 0.3%CVE-2026-77784LOWRank Math SEO < 1.0.277 - Author+ Robots and Pillar Content Meta Update on Non-Owned Objects via mark_page_asEPSS 0.3%CVE-2026-19225MEDIUMDefender Security < 6.2.0 - Admin+ Network-Wide RCE via Hub Connector on MultisiteEPSS 0.3%CVE-2024-3059MEDIUMENL Newsletter <= 1.0.1 - Campaign Deletion via CSRFEPSS 0.3%CVE-2026-10755LOWAll in One SEO < 4.9.9 – Contributor+ Incorrect Authorization via AI IntegrationEPSS 0.3%CVE-2022-4872MEDIUMWooCommerce Chained Products < 2.12.0 - Unauthenticated Arbitrary Options Update to 'no'EPSS 0.3%