Vulnerabilities in andy_moyle
21 resultsCVE-2024-30244HIGHWordPress Church Admin plugin <= 4.0.27 - SQL Injection via shortcode vulnerabilityEPSS 0.7%CVE-2024-31280CRITICALWordPress Church Admin plugin <= 4.1.5 - Arbitrary File Upload vulnerabilityEPSS 0.6%CVE-2024-37418CRITICALWordPress Church Admin plugin <= 4.4.6 - Arbitrary File Upload vulnerabilityEPSS 0.5%CVE-2025-26941CRITICALWordPress Church Admin plugin <= 5.0.18 - SQL Injection vulnerabilityEPSS 0.5%CVE-2024-53795MEDIUMWordPress Church Admin plugin <= 5.0.8 - Broken Access Control vulnerabilityEPSS 0.5%CVE-2024-30505MEDIUMWordPress Church Admin plugin <= 4.1.18 - Broken Access Control vulnerabilityEPSS 0.5%CVE-2024-31281MEDIUMWordPress Church Admin plugin <= 4.1.6 - Broken Access Control vulnerabilityEPSS 0.3%CVE-2024-37440MEDIUMWordPress Church Admin plugin <= 4.4.4 - Broken Access Control vulnerabilityEPSS 0.3%CVE-2024-30193MEDIUMWordPress Church Admin plugin <= 4.1.17 - Stored Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-30197MEDIUMWordPress Church Admin plugin <= 4.0.26 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-35764MEDIUMWordPress Church Admin plugin <= 4.4.4 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-50438HIGHWordPress Church Admin plugin < 5.0.0 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2025-39555MEDIUMWordPress Church Admin plugin <= 5.0.23 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-34828MEDIUMWordPress Church Admin plugin <= 4.1.32 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.3%CVE-2026-0682LOWChurch Admin <= 5.0.28 - Authenticated (Administrator+) Blind Server-Side Request Forgery via 'audio_url' ParameterEPSS 0.2%CVE-2024-35637MEDIUMWordPress Church Admin plugin <= 4.3.6 - Server Side Request Forgery (SSRF) vulnerabilityEPSS 0.2%CVE-2025-39553MEDIUMWordPress Church Admin plugin <= 5.0.9 - Sensitive Data Exposure vulnerabilityEPSS 0.2%CVE-2024-32090MEDIUMWordPress Church Admin plugin <= 4.0.27 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%CVE-2024-30493MEDIUMWordPress Church Admin plugin <= 4.1.7 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%CVE-2025-57896MEDIUMWordPress Church Admin Plugin <= 5.0.26 - Broken Access Control VulnerabilityEPSS 0.2%