Vulnerabilidades en Unknown

5492 resultados
Análisis Vexday

O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.

CVE-2023-0543MEDIUMArigato Autoresponder and Newsletter < 2.1.7.2 - Admin+ Stored XSSEPSS 0.5%CVE-2024-2603MEDIUMSalon booking system <= 9.6.5 - Editor+ Stored XSS via Email SettingsEPSS 0.5%CVE-2024-2102MEDIUMSalon booking system < 9.6.3 - Unauthenticated Stored XSSEPSS 0.5%CVE-2024-1295MEDIUMThe Events Calendar (Free < 6.4.0.1, Pro < 6.4.0.1) - Contributor+ Arbitrary Events AccessEPSS 0.5%CVE-2024-0420MEDIUMMapPress Maps for WordPress < 2.88.15 - Contributor+ Stored XSSEPSS 0.5%CVE-2023-1019MEDIUMHelp Desk WP <= 1.2.0 - Editor+ Stored XSSEPSS 0.5%CVE-2023-0490MEDIUMf(x) TOC <= 1.1.0 - Contributor+ Stored XSSEPSS 0.5%CVE-2024-0905MEDIUMFancy Product Designer < 6.1.8 - Reflected Cross Site ScriptingEPSS 0.5%CVE-2026-79996HIGHUser Registration & Membership < 5.2.6 - Authenticated Privilege Escalation via Login SettingsEPSS 0.5%CVE-2026-75796HIGHAI Engine 2.8.0 - 3.6.0 - Admin+ Multisite Network Administrator Account Takeover via MCP User ToolsEPSS 0.5%CVE-2026-17533HIGHAll-in-One WP Migration and Backup < 7.108 - Multisite Subsite Admin+ Network-Wide PHP Code Execution via REST ImportEPSS 0.5%CVE-2026-77752HIGHTemporary Login Without Password 1.5 - 1.9.8 - Multisite Subsite Admin+ Network Super Admin Privilege EscalationEPSS 0.5%CVE-2026-92540HIGHImport and export users and customers < 2.5.2 - Custom Role Privilege Escalation to Administrator via caller_can_promote_usersEPSS 0.5%CVE-2026-77705HIGHAmelia < 2.4.10 - Amelia Manager+ WordPress Account TakeoverEPSS 0.5%CVE-2024-10010MEDIUMLearnPress < 4.2.7.2 - Admin+ Stored XSSEPSS 0.5%CVE-2026-76554HIGHWP Import Export Lite < 3.9.35 - Authenticated Privilege Escalation via User ImportEPSS 0.5%CVE-2022-3911HIGHiubenda < 3.3.3 - Subscriber+ Privileges Escalation to AdminEPSS 0.5%CVE-2026-74925HIGHMultiVendorX 5.0.0 - 5.0.15 - Store Owner+ Privilege Escalation to AdministratorEPSS 0.5%CVE-2026-85569HIGHTutor LMS 2.7.1 - < 4.0.8 - Read-Only API Key Privilege Escalation via REST Request MisclassificationEPSS 0.5%CVE-2026-92541HIGHImport and export users and customers < 2.5.2 - Custom Role Privilege Escalation to Administrator via Frontend ImporterEPSS 0.5%