Vulnerabilidades en contrid
10 resultadosCVE-2026-3018HIGHNewsletters <= 4.13 - Unauthenticated SQL Injection via wpmlsubscriber_id ParameterEPSS 1.4%CVE-2025-4857HIGHNewsletters <= 4.9.9.9 - Authenticated (Administrator+) Local File InclusionEPSS 0.6%CVE-2024-5543HIGHSlideshow Gallery LITE <= 1.8.1 - Authenticated (Contributor+) SQL InjectionEPSS 0.5%CVE-2024-8247HIGHNewsletters <= 4.9.9.2 - Authenticated Privilege EscalationEPSS 0.5%CVE-2024-7411MEDIUMNewsletters <= 4.9.9 - Unauthenticated Full Path DisclosureEPSS 0.4%CVE-2024-10181MEDIUMNewsletters <= 4.9.9.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via newsletters_video ShortcodeEPSS 0.4%CVE-2025-3107MEDIUMNewsletters <= 4.9.9.8 - Authenticated (Contributor+) SQL Injection orderby ParameterEPSS 0.3%CVE-2025-2009HIGHNewsletters <= 4.9.9.7 - Unauthenticated Stored Cross-Site ScriptingEPSS 0.3%CVE-2024-13739MEDIUMNewsletters <= 4.9.9.7 - Reflected Cross-Site Scripting via To ParameterEPSS 0.2%CVE-2026-2021MEDIUMSlideshow Gallery LITE <= 1.8.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'alwaysauto' Shortcode AttributeEPSS 0.2%