Vulnerabilidades en Unknown

5484 resultados
Análisis Vexday

O fornecedor apresenta um portfólio de 4.268 vulnerabilidades, com 144 publicadas nos últimos 90 dias, indicando exposição contínua a riscos. Embora nenhuma esteja sob ataque ativo documentado no KEV, as 124 vulnerabilidades críticas e a predominância de falhas de validação de entrada (CWE-79) representam vetores de exploração significativos que demandam atenção imediata em priorização de patches.

CVE-2023-1893—Login Configurator <= 2.1 - Reflected Cross-Site ScriptingEPSS 0.7%CVE-2023-4691HIGHBookly < 22.4 - Admin+ SQLiEPSS 0.7%CVE-2023-2333—Ninja Forms Google Sheet Connector < 1.2.7 - Reflected XSSEPSS 0.7%CVE-2023-3650—Bubble Menu < 3.0.5 - Admin+ Stored XSS EPSS 0.7%CVE-2021-24652—PostX Gutenberg Blocks for Post Grid < 2.4.10 - Missing Access ControlsEPSS 0.7%CVE-2022-1938—Awin Data Feed < 1.8 - Unauthenticated Stored Cross-Site ScriptingEPSS 0.7%CVE-2022-2565—Best Payments Plugin for WP < 4.2.1 - Unauthenticated Stored Cross-Site ScriptingEPSS 0.7%CVE-2023-4631MEDIUMDoLogin Security < 3.7 - IP SpoofingEPSS 0.7%CVE-2022-1255—Import and export users and customers < 1.19.2.1 - Admin+ Stored Cross-Site ScriptingEPSS 0.7%CVE-2023-0876MEDIUMWP Meta SEO < 4.5.3 - Subscriber+ Improper Authorization causing Arbitrary RedirectEPSS 0.7%CVE-2021-24491—Fileviewer <= 2.2 - Arbitrary File Upload/Deletion via CSRFEPSS 0.7%CVE-2026-15932MEDIUMSupport Genix Lite < 1.4.48 - Unauthenticated Arbitrary File Read via Path TraversalEPSS 0.7%CVE-2024-1588MEDIUMSendPress Newsletters <= 1.23.11.6 - Admin+ Stored XSS via SettingsEPSS 0.7%CVE-2023-5922HIGHRoyal Elementor Addons and Templates < 1.3.81 - Unauthenticated Arbitrary Post ReadEPSS 0.7%CVE-2022-1613MEDIUMRestricted Site Access < 7.3.2 - Access Bypass via IP SpoofingEPSS 0.7%CVE-2022-2267—MailChimp for Woocommerce < 2.7.1 - Subscriber+ SSRFEPSS 0.7%CVE-2024-13098MEDIUMWP Email Newsletter <= 1.1 - Reflected XSSEPSS 0.7%CVE-2023-5672—WP Mail Log < 1.1.3 – Contributor+ LFI in wml_logs/send_mail endpointEPSS 0.7%CVE-2022-4759MEDIUMGigPress < 2.3.28 - Contributor+ Stored XSS via ShortcodeEPSS 0.7%CVE-2022-4682MEDIUMLightbox Gallery < 0.9.5 - Contributor+ Stored XSS via ShortcodeEPSS 0.7%