Vulnerabilidades en unknown

4197 resultados
CVE-2021-24581Blue Admin <= 21.06.01 - CSRF to Stored Cross-Site Scripting (XSS)EPSS 4.1%CVE-2022-0765Loco Translate < 2.6.1 - Authenticated Stored Cross-Site ScriptingEPSS 4.0%CVE-2023-0037CRITICAL10WebMapBuilder < 1.0.73 - Unauthenticated SQLiEPSS 3.9%CVE-2021-24335Car Repair Services < 4.0 - Unauthenticated Reflected XSS & XFSEPSS 3.9%CVE-2022-4681CRITICALHide My WP < 6.2.9 - Unauthenticated SQLiEPSS 3.8%CVE-2022-3141Translatepress Multilinugal < 2.3.3 - Admin+ SQLiEPSS 3.8%CVE-2018-17918Circontrol CirCarLife all versions prior to 4.3.1, authentication to the device can be bypassed by entering the URL of a specific page.EPSS 3.8%CVE-2024-5488CRITICALSEOPress < 7.9 - Unauthenticated Object InjectionEPSS 3.8%CVE-2022-0140Visual Form Builder < 3.0.6 - Unauthenticated Information DisclosureEPSS 3.8%CVE-2023-0224CRITICALGiveWP < 2.24.1 - Unauthenticated SQLiEPSS 3.7%CVE-2018-17916InduSoft Web Studio versions prior to 8.1 SP2, and InTouch Edge HMI (formerly InTouch Machine Edition) versions prior to 2017 SP2. A remote EPSS 3.7%CVE-2021-24376Autoptimize < 2.7.8 - Arbitrary File Upload via "Import Settings"EPSS 3.7%CVE-2022-3481CRITICALWooCommerce Dropshipping < 4.4 - Unauthenticated SQLiEPSS 3.7%CVE-2022-3768HIGHWPSmartContracts < 1.3.12 - Author+ SQLiEPSS 3.7%CVE-2025-10162HIGHOrderConvo < 14 - Unauthenticated Arbitrary File ReadEPSS 3.7%CVE-2022-3634CRITICALContact Form 7 Database Addon < 1.2.6.5 - CSV InjectionEPSS 3.6%CVE-2022-4297CRITICALWP AutoComplete Search <= 1.0.4 - Unauthenticated SQLiEPSS 3.6%CVE-2022-1054RSVP and Event Management < 2.7.8 - Unauthenticated Entries ExportEPSS 3.6%CVE-2022-0901Ad Inserter < 2.7.12 - Reflected Cross-Site ScriptingEPSS 3.6%CVE-2023-3134Forminator < 1.24.4 - Reflected XSSEPSS 3.5%