Vulnerabilidades en Unknown

5444 resultados
Análisis Vexday

O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.

CVE-2021-24167Web-Stat < 1.4.1 - API Key DisclosureEPSS 1.4%CVE-2022-2903HIGHNinjaForms < 3.6.13 - Admin+ PHP Objection InjectionEPSS 1.4%CVE-2022-3574CRITICALWPForms Pro < 1.7.7 - CSV InjectionEPSS 1.4%CVE-2022-0899Header Footer Code Manager < 1.1.24 - Reflected Cross-Site ScriptingEPSS 1.4%CVE-2022-1910Shortcodes and extra features for Phlox theme < 2.9.8 - Reflected Cross-Site-ScriptingEPSS 1.4%CVE-2022-2357WSM Downloader <= 1.4.0 - Unauthenticated Arbitrary File DownloadEPSS 1.4%CVE-2026-6382CRITICALMultiple elFinder Plugins - Authenticated OS Command InjectionEPSS 1.4%CVE-2021-24934Visual CSS Style Editor < 7.5.4 - Reflected Cross-Site ScriptingEPSS 1.4%CVE-2022-0385Crazy Bone <= 0.6.0 - Unauthenticated Stored XSSEPSS 1.4%CVE-2021-24241Advanced Custom Field Pro < 5.9.1 - Reflected Cross-Site Scripting (XSS)EPSS 1.4%CVE-2025-2907CRITICALOrder Delivery Date Pro for WooCommerce < 12.3.1 - Unauthenticated Arbitrary Option UpdateEPSS 1.4%CVE-2022-2317Simple Membership < 4.1.3 - Unauthenticated Membership Privilege EscalationEPSS 1.4%CVE-2022-0493String Locator < 2.5.0 - Admin+ Arbitrary File ReadEPSS 1.4%CVE-2021-24769Permalink Manager Lite < 2.2.13.1 - Admin+ SQL InjectionEPSS 1.4%CVE-2021-24447WP Image Zoom < 1.47 - Local File InclusionEPSS 1.4%CVE-2021-24754MainWP Child Reports < 2.0.8 - Admin+ SQL InjectionEPSS 1.4%CVE-2023-6528HIGHSlider Revolution < 6.6.19 - Author+ Insecure Deserialization leading to RCEEPSS 1.4%CVE-2021-25075Duplicate Page or Post < 1.5.1 - Arbitrary Settings Update to Stored XSSEPSS 1.4%CVE-2021-24506Slider Hero < 8.2.7 - Contributor+ SQL InjectionEPSS 1.4%CVE-2021-24580Side Menu Lite < 2.2.6 - Authenticated SQL InjectionEPSS 1.4%