Vulnerabilities in Unknown
5,639 resultsCVE-2023-6499MEDIUMlasTunes <= 3.6.1 - Settings Update via CSRFEPSS 0.2%CVE-2024-5030LOWCM Table Of Contents – WordPress TOC Plugin < 1.2.3 - Settings Reset via CSRFEPSS 0.2%CVE-2024-5003MEDIUMWP Stacker <= 1.8.5 - Stored XSS via CSRFEPSS 0.2%CVE-2024-4969MEDIUMWidget Bundle <= 2.0.0 - Widget Disable/Enable via CSRFEPSS 0.2%CVE-2023-7195MEDIUMWP-Reply Notify <= 1.1 - Settings Update via CSRFEPSS 0.2%CVE-2026-85131MEDIUMWPLP Cookie Consent < 4.4.4 - Arbitrary Post Deletion via CSRFEPSS 0.2%CVE-2024-3965MEDIUMPray For Me <= 1.0.4 - Settings Update via CSRFEPSS 0.2%CVE-2026-77766MEDIUMDirectorist 8.5 - 8.9.4 - Subscriber+ Order and Financial Record Disclosure via REST Orders EndpointEPSS 0.2%CVE-2026-2343MEDIUMPeproDev Ultimate Invoice <= 2.2.5 - Unauthenticated Invoice Archive DownloadEPSS 0.2%CVE-2026-1542MEDIUMSuper Stage WP <= 1.0.1 - Unauthenticated PHP Object InjectionEPSS 0.2%CVE-2026-81339MEDIUMMasterStudy LMS < 3.7.50 - Subscriber+ Quiz Attempt Grade Disclosure via IDOREPSS 0.2%CVE-2026-93511MEDIUMPremium Packages < 7.2.1 - Unauthenticated PayPal Webhook Signature Verification BypassEPSS 0.2%CVE-2026-84046MEDIUMDirectorist < 8.9.5 - Subscriber+ SSRF via Avatar URLEPSS 0.2%CVE-2024-4480MEDIUMWP Prayer II <= 2.4.7 - Email Settings Update via CSRFEPSS 0.2%CVE-2026-87979MEDIUMPaymob for WooCommerce < 4.1.14 - Unauthenticated Saved Card Token Write to Any User via WebhookEPSS 0.2%CVE-2026-1753MEDIUMGutena Forms < 1.6.1 - Contributor+ Arbitrary Limited Options UpdateEPSS 0.2%CVE-2026-97317MEDIUMGiveaways and Contests by RafflePress < 1.12.27 - Unauthenticated reCAPTCHA Secret Key Disclosure via Giveaway PageEPSS 0.2%CVE-2025-12569MEDIUMWP Front User Submit < 5.0.0 - Open RedirectEPSS 0.2%CVE-2026-86610MEDIUMDownload Manager < 3.3.71 - Author+ Stored XSS via Package IconEPSS 0.2%CVE-2026-16600HIGHSmartAIPress <= 1.2.0 - Subscriber+ Server-Side Request Forgery via smartaipress_openai_upload_and_set_featured_imageEPSS 0.2%