Vulnerabilidades en Unknown
5591 resultadosAnálisis Vexday
O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.
CVE-2026-17517MEDIUMContent Views < 4.5.1.2 - Unauthenticated Non-Public Post Content Disclosure via Views Status FilterEPSS 0.2%CVE-2026-11871MEDIUMTeam Showcase Supreme < 9.3 - Unauthenticated Sensitive Data Disclosure via wpm_6310_team_member_detailsEPSS 0.2%CVE-2026-86832MEDIUMMetForm < 4.3.1 - Unauthenticated Form Entry Data Disclosure via REST APIEPSS 0.2%CVE-2026-94274MEDIUMYayReviews 1.0.4 - 1.4.0 - Unauthenticated Sensitive Data Disclosure via REST APIEPSS 0.2%CVE-2026-90950MEDIUMPaid Member Subscriptions < 3.1.0 - Unauthenticated reCAPTCHA Bypass via Registration FormEPSS 0.2%CVE-2026-14562MEDIUMTeddy Bear Customize Addon <= 1.0.5 - Unauthenticated Order Data DisclosureEPSS 0.2%CVE-2026-92995MEDIUMVerge3D <= 4.13.0 - Unauthenticated Product Download Disclosure via v3d_download_fileEPSS 0.2%CVE-2025-12954LOWTimetable and Event Schedule by MotoPress < 2.4.16 - Contributor+ Event Disclosure via IDOREPSS 0.2%CVE-2026-89331MEDIUMFluentBoards 1.95 - 2.0.15 - Unauthenticated Board Member Email Address Disclosure via Public Board EndpointsEPSS 0.2%CVE-2026-90985MEDIUMWPC Smart Compare for WooCommerce < 6.6.1 - Unauthenticated Password-Protected Product Description Disclosure via woosc_loadEPSS 0.2%CVE-2026-96886MEDIUMCourse Booking System < 7.0.9 - Unauthenticated Attendee PII Disclosure via CSV ExportEPSS 0.2%CVE-2024-8052MEDIUMReview Ratings <= 1.6 - Stored XSS via CSRFEPSS 0.2%CVE-2026-93508HIGHWC Fields Factory < 4.1.11 - Subscriber+ Arbitrary Post Meta Manipulation via AJAXEPSS 0.2%CVE-2025-12628MEDIUMWP 2FA < 3.0.0 - Second Factor BypassEPSS 0.2%CVE-2026-10530MEDIUMPie Register < 3.8.4.10 - Unauthenticated Email Verification Bypass via Predictable TokenEPSS 0.2%CVE-2025-15485HIGHAuto x LINE <= 1.0.0 – Unauthenticated REST API Endpoints CallEPSS 0.2%CVE-2024-8094MEDIUMNtz Antispam <= 2.0e - Settings Update via CSRFEPSS 0.2%CVE-2024-8286MEDIUMGDPR Cookie Consent <= 2.6.0 - Bulk Delete via CSRFEPSS 0.2%CVE-2024-3629LOWHL Twitter <= 2014.1.18 - Settings Update via CSRFEPSS 0.2%CVE-2024-3824MEDIUMBase64 Encoder/Decoder <= 0.9.2 - Settings Reset via CSRFEPSS 0.2%