Vulnerabilidades en brechtvds

25 resultados
CVE-2024-0380MEDIUMWP Recipe Maker <= 9.1.0 - Directory TraversalEPSS 0.8%CVE-2024-1206HIGHWP Recipe Maker <= 9.1.2 - Missing Authorization to Authenticated (Subscriber+) SQL InjectonEPSS 0.7%CVE-2023-6970MEDIUMWP Recipe Maker <= 9.1.0 - Reflected Cross-Site Scripting via RefererEPSS 0.7%CVE-2024-0381MEDIUMWP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'tag'EPSS 0.6%CVE-2024-0384MEDIUMWP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Recipe NotesEPSS 0.6%CVE-2024-0382MEDIUMWP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via header_tagEPSS 0.6%CVE-2024-0255MEDIUMWP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via icon_colorEPSS 0.5%CVE-2024-5863MEDIUMEasy Image Collage <= 1.13.5 - Missing Authorization to Authenticated (Contributor+) Data ClearanceEPSS 0.5%CVE-2024-0383MEDIUMWP Recipe Maker <= 9.1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'group_tag'EPSS 0.4%CVE-2024-1571MEDIUMWP Recipe Maker <= 9.2.1 - Authenticated Stored Cross-Site Scripting via Video EmbedEPSS 0.4%CVE-2024-5864MEDIUMEasy Affiliate Links <= 3.7.3 - Missing Authorization to Authenticated (Subscriber+) Settings ResetEPSS 0.4%CVE-2024-9650MEDIUMWP Recipe Maker <= 9.6.1 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via 'tooltip'EPSS 0.4%CVE-2024-4043MEDIUMWP Ultimate Post Grid <= 3.9.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via wpupg-text ShortcodeEPSS 0.3%CVE-2023-6958MEDIUMWP Recipe Maker <= 9.1.0 - Authenticated(Contributor+) Stored Cross-Site Scripting via ShortcodeEPSS 0.3%CVE-2024-9051MEDIUMWP Ultimate Post Grid <= 3.9.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via wpupg-grid-with-filters ShortcodeEPSS 0.3%CVE-2024-3490MEDIUMWP Recipe Maker <= 9.3.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via wprm-recipe-roundup-item ShortcodeEPSS 0.3%CVE-2025-15527MEDIUMWP Recipe Maker <= 10.2.2 - Insecure Direct Object Reference to Sensitive Information ExposureEPSS 0.3%CVE-2026-1268MEDIUMDynamic Widget Content <= 1.3.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Widget Content FieldEPSS 0.3%CVE-2025-14385MEDIUMWP Recipe Maker <= 10.2.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via ShortcodeEPSS 0.3%CVE-2026-1558MEDIUMWP Recipe Maker <= 10.3.2 - Insecure Direct Object Reference to Unauthenticated Arbitrary Post Metadata Modification via 'recipeId' ParameterEPSS 0.3%