Vulnerabilidades en wpxpo
34 resultadosAnálisis Vexday
A WPXpo possui 14 vulnerabilidades catalogadas, sendo 2 publicadas nos últimos 90 dias, com destaque para falhas de autorização (CWE-862) como vetor dominante. Não há registros de exploração ativa em campanha (KEV) ou vulnerabilidades críticas, indicando risco moderado e sem pressão imediata de ataque.
CVE-2026-0718MEDIUMPost Grid Gutenberg Blocks for News, Magazines, Blog Websites – PostX <= 5.0.5 - Missing Authorization to Limited Post Meta ModificationEPSS 0.3%CVE-2026-1720HIGHWowOptin: Next-Gen Popup Maker – Create Stunning Popups and Optins for Lead Generation <= 1.4.24 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin InstallationEPSS 0.3%CVE-2024-50443MEDIUMWordPress PostX plugin <= 4.1.12 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2026-57686HIGHWordPress WowAddons plugin <= 1.6.14 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2025-54751HIGHWordPress PostX plugin <= 4.1.36 - Broken Access Control vulnerabilityEPSS 0.3%CVE-2025-68606MEDIUMWordPress PostX plugin <= 5.0.3 - Sensitive Data Exposure vulnerabilityEPSS 0.2%CVE-2026-2518MEDIUMFastX <= 1.0.2 - Missing Authorization to Authenticated (Subscriber+) Limited Plugin Installation and ActivationEPSS 0.2%CVE-2025-31096MEDIUMWordPress PostX plugin <= 4.1.25 - Cross Site Scripting (XSS) VulnerabilityEPSS 0.2%CVE-2026-15100MEDIUMPost Grid Gutenberg Blocks <= 5.0.32 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'searchnoresult' Block AttributeEPSS 0.2%CVE-2025-62070MEDIUMWordPress WowRevenue plugin <= 1.2.13 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2026-17161MEDIUMWowStore <= 4.4.24 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'filterMobileText' Block AttributeEPSS 0.2%CVE-2026-17162MEDIUMWowStore <= 4.4.24 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'currentPostId' Block AttributeEPSS 0.2%CVE-2026-39700MEDIUMWordPress WowOptin plugin <= 1.4.32 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2026-5158MEDIUMPostX <= 5.0.13 - Authenticated (Contributor+) Stored Cross-Site Scripting via Post Comments BlockEPSS 0.2%