Vulnerabilidades en envothemes

14 resultados
CVE-2024-0766MEDIUMEnvo's Elementor Templates & Widgets for WooCommerce <= 1.4.4 - Missing Authorization via templates_ajax_requestEPSS 0.5%CVE-2024-35167MEDIUMWordPress Envo's Elementor Templates & Widgets for WooCommerce plugin <=1.4.8 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.4%CVE-2024-4385MEDIUMEnvo Extra <= 1.8.16 - Authenticated (Contributor+) Cross-Site ScriptingEPSS 0.3%CVE-2024-0768MEDIUMEnvo's Elementor Templates & Widgets for WooCommerce <= 1.4.4 - Cross-Site Request Forgery via ajax_theme_activationEPSS 0.3%CVE-2024-5645MEDIUMEnvo Extra <= 1.8.23 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button WidgetEPSS 0.3%CVE-2024-32456MEDIUMWordPress Envo Extra plugin <= 1.8.11 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-10770MEDIUMEnvo Extra <= 1.9.3 - Authenticated (Contributor+) Post DisclosureEPSS 0.3%CVE-2024-0767MEDIUMEnvo's Elementor Templates & Widgets for WooCommerce <= 1.4.4 - Cross-Site Request Forgery via ajax_plugin_activationEPSS 0.3%CVE-2024-43292MEDIUMWordPress Envo's Elementor Templates & Widgets for WooCommerce plugin <= 1.4.16 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-47471MEDIUMWordPress Envo Extra plugin <= 1.9.9 - Broken Access Control VulnerabilityEPSS 0.2%CVE-2025-22770MEDIUMWordPress Envo Multipurpose theme <= 1.1.6 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2024-50447MEDIUMWordPress Envo's Elementor Templates & Widgets for WooCommerce plugin <= 1.4.19 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2026-32386MEDIUMWordPress Envo Extra plugin <= 1.9.13 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2025-66066MEDIUMWordPress Envo Extra plugin <= 1.9.11 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%