Vulnerabilidades en wpvibes

36 resultados
CVE-2024-1358HIGHElementor Addon Elements <= 1.12.12 - Directory Traversal to Local File InclusionEPSS 1.2%CVE-2023-4723MEDIUMElementor Addon Elements <= 1.12.7 - Missing Authorization to Sensitive Information ExposureEPSS 0.9%CVE-2023-47530HIGHWordPress Redirect 404 Error Page to Homepage or Custom Page with Logs Plugin <= 1.8.7 is vulnerable to SQL InjectionEPSS 0.7%CVE-2023-51410CRITICALWordPress WP Mail Log Plugin <= 1.1.2 is vulnerable to Arbitrary File UploadEPSS 0.6%CVE-2024-3743MEDIUMElementor Addon Elements <= 1.13.3 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.6%CVE-2024-2091MEDIUMElementor Addon Elements <= 1.13.2 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.5%CVE-2024-1392MEDIUMElementor Addon Elements <= 1.12.12 - Authenticated (Contributor+) Stored Cross-Site Scripting via Dual Button WidgetEPSS 0.5%CVE-2024-13215MEDIUMElementor Addon Elements <= 1.13.10 - Authenticated (Contributor+) Sensitive Information Exposure via Modal PopupEPSS 0.5%CVE-2024-1391MEDIUMElementor Addon Elements <= 1.12.12 - Authenticated (Contributor+) Stored Cross-Site Scripting via Thumbnail Slider WidgetEPSS 0.5%CVE-2024-1393MEDIUMElementor Addon Elements <= 1.12.12 - Authenticated (Contributor+) Stored Cross-Site Scripting via Content Switcher WidgetEPSS 0.5%CVE-2024-1422MEDIUMElementor Addon Elements <= 1.12.12 - Authenticated(Contributor+) Stored Cross-Site Scripting via Modal Popup effetEPSS 0.5%CVE-2024-2792MEDIUMElementor Addon Elements <= 1.13.2 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via 'Text Separator' and 'Image Compare' WidgetEPSS 0.5%CVE-2023-5381MEDIUMElementor Addon Elements <= 1.12.7 - Authenticated (Administrator+) Stored Cross-Site ScriptingEPSS 0.5%CVE-2024-5325HIGHForm Vibes <= 1.4.10 - Authenticated (Subscriber+) SQL Injection via fv_export_dataEPSS 0.5%CVE-2024-47361MEDIUMWordPress Elementor Addon Elements plugin <= 1.13.6 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2022-4974MEDIUMFreemius SDK <= 2.4.2 - Missing Authorization ChecksEPSS 0.4%CVE-2023-3088HIGHWP Mail Log <= 1.1.1 - Unauthenticated Stored Cross-Site Scripting via EmailEPSS 0.4%CVE-2024-7122MEDIUMElementor Addon Elements <= 1.13.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple WidgetsEPSS 0.4%CVE-2024-8902MEDIUMElementor Addon Elements <= 1.13.8 - Authenticated (Contributor+) Sensitive Information Exposure via table_saved_sectionsEPSS 0.4%CVE-2024-4569MEDIUMElementor Addon Elements <= 1.13.5 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.4%