Vulnerabilities in Unknown

5,591 results
Vexday analysis

O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.

CVE-2026-8155MEDIUMBuddyPress < 14.5.0 - Subscriber+ Private Messages Disclosure via IDOREPSS 0.2%CVE-2026-18480HIGHSureCart < 4.6.3 - Subscriber+ Administrator Account TakeoverEPSS 0.2%CVE-2023-1011MEDIUMChatBot < 4.4.5 - Stored XSS via CSRFEPSS 0.2%CVE-2023-0058—Tiempo.com <= 0.1.2 - Stored XSS via CSRFEPSS 0.2%CVE-2025-15484CRITICALOrder Notification for WooCommerce < 3.6.3 - Unauthenticated WooCommerce REST Permission BypassEPSS 0.2%CVE-2023-7125MEDIUMCommunity by PeepSo < 6.3.1.2 - User Post Creation via CSRFEPSS 0.2%CVE-2026-90987MEDIUMEasy PayPal & Stripe Buy Now Button 1.8 - 2.0.5 - Unauthenticated Payment Amount Manipulation via Client-Supplied PriceEPSS 0.2%CVE-2026-85006MEDIUMHappy Addons for Elementor < 3.50.0 - Contributor+ Stored XSS via Creative Button WidgetEPSS 0.2%CVE-2026-85016MEDIUMUnlimited Elements For Elementor < 2.0.21 - Contributor+ Stored XSS via Icon Library ParameterEPSS 0.2%CVE-2026-96531MEDIUMOptimole 4.0.0 - 4.2.12 - Author+ Stored XSS via Video Player BlockEPSS 0.2%CVE-2026-88782MEDIUMKubio AI Page Builder < 2.9.3 - Contributor+ Stored XSS via Image Gallery Item URL AttributeEPSS 0.2%CVE-2026-89005MEDIUMWPeMatico RSS Feed Fetcher < 2.8.26 - Contributor+ Stored XSS via Word to CategoryEPSS 0.2%CVE-2026-92436MEDIUMMailchimp for WooCommerce < 6.3 - Unauthenticated Customer Email and Cart Disclosure via IDOREPSS 0.2%CVE-2026-17005MEDIUMHorizontal Scrolling Announcements <= 2.6 - Contributor+ Stored XSS via Style FieldEPSS 0.2%CVE-2026-91022MEDIUMMotors < 1.4.124 - Listing Manager+ Stored XSS via Badge ColorEPSS 0.2%CVE-2026-96899MEDIUMOptima Express 8.6.0 - 8.7.5 - Author+ Stored XSS via faq_scriptEPSS 0.2%CVE-2025-5305CRITICALPassword Reset with Code < 0.0.17 - Insecure Password Reset Code CreationEPSS 0.2%CVE-2024-2857MEDIUMSimple Buttons Creator <= 1.04 - Unauthenticated Stored XSSEPSS 0.2%CVE-2026-94239MEDIUMLoco Translate < 2.8.9 - Translator+ Stored XSS via Bundle ConfigurationEPSS 0.2%CVE-2024-13146HIGHBooknetic < 4.1.5 - Staff Creation via CSRFEPSS 0.2%