Vulnerabilidades en Unknown
5428 resultadosAnálisis Vexday
O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.
CVE-2023-6065—Quttera Web Malware Scanner < 3.4.2.1 - Directory Listing to Sensitive Data ExposureEPSS 18.6%CVE-2022-4120CRITICALStop Spammers Security < 2022.6 - Unauthenticated PHP Object InjectionEPSS 18.1%CVE-2023-0234HIGHSiteGround Security < 1.3.1 - Admin+ SQLiEPSS 18.0%CVE-2023-2288HIGHOtter - Gutenberg Blocks < 2.2.6 - Author+ PHAR DeserializationEPSS 18.0%CVE-2022-4302HIGHWhite Label CMS < 2.5 - Admin+ PHP Object InjectionEPSS 17.7%CVE-2023-1669HIGHSEOPress < 6.5.0.3 - Admin+ PHP Object InjectionEPSS 17.7%CVE-2022-4324HIGHCustom Field Template < 2.5.8 - Admin+ PHP Object InjectionEPSS 17.7%CVE-2022-4043HIGHWP Custom Admin Interface < 7.29 - Admin+ PHP Object InjectionEPSS 17.7%CVE-2022-4395CRITICALMembership For WooCommerce < 2.1.7 - Unauthenticated Arbitrary File UploadEPSS 17.6%CVE-2025-8085HIGHDitty < 3.1.58 - Unauthenticated SSRFEPSS 17.4%CVE-2021-24786HIGHDownload Monitor < 4.4.5 - Admin+ SQL InjectionEPSS 17.3%CVE-2022-3416HIGHWPtouch < 4.3.45 - Admin+ Arbitrary File UploadEPSS 17.3%CVE-2021-25076—WP User Frontend < 3.5.26 - SQL Injection to Reflected Cross-Site ScriptingEPSS 17.1%CVE-2024-0881MEDIUMCombo Blocks < 2.2.76 - Unauthenticated Password Protected Posts AccessEPSS 16.9%CVE-2023-1549HIGHAd Inserter < 2.7.27 - Admin+ PHP Object InjectionEPSS 16.9%CVE-2022-2551—Duplicator < 1.4.7 - Unauthenticated Backup DownloadEPSS 16.7%CVE-2022-2314—VR Calendar < 2.3.2 - Unauthenticated Arbitrary Function CallEPSS 16.5%CVE-2023-1347HIGHCustomizer Export/Import < 0.9.6 - Admin+ PHP Object InjectionEPSS 16.0%CVE-2025-4094CRITICALDigits < 8.4.6.1 - Auth Bypass via OTP BruteforcingEPSS 15.8%CVE-2023-4922—WPB Show Core <= 2.2 - Unauthenticated Local File InclusionEPSS 15.7%