Vulnerabilidades em Averta
56 resultadosCVE-2025-2011HIGHSlider & Popup Builder by Depicter <= 3.6.1 - Unauthenticated SQL Injection via 's' ParameterEPSS 35.1%CVE-2024-4389HIGHSlider & Popup Builder by Depicter – Add Image Slider, Carousel Slider, Exit Intent Popup, Popup Modal, Coupon Popup, Post Slider Carousel <= 3.1.1 - Authenticated (Contributor+) Arbitrary File UploadEPSS 1.0%CVE-2023-7064HIGHShortcodes and extra features for Phlox theme <= 2.17.5 - Authenticated (Subscriber+) PHP Object Injection via auxin_template_control_importerEPSS 0.9%CVE-2024-0611MEDIUMMaster Slider – Responsive Touch Slider <= 3.9.9 - Authenticated(Editor+) Stored Cross-Site Scripting via slider callbackEPSS 0.7%CVE-2023-38399HIGHWordPress Phlox Portfolio plugin <= 2.3.1 - Unauthenticated Local File Inclusion vulnerabilityEPSS 0.6%CVE-2023-39163HIGHWordPress Phlox Shop plugin <= 2.0.0 - Unauthenticated Local File Inclusion vulnerabilityEPSS 0.6%CVE-2025-12497HIGHPremium Portfolio Features for Phlox theme <= 2.3.10 - Unauthenticated Local File Inclusion via args[extra_template_path]EPSS 0.5%CVE-2024-3341MEDIUMShortcodes and extra features for Phlox theme <= 2.15.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'aux_gmaps' ShortcodeEPSS 0.5%CVE-2024-3517MEDIUMShortcodes and extra features for Phlox theme <= 2.15.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via Accordion WidgetEPSS 0.5%CVE-2024-4390MEDIUMDepicter <= 3.0.2 - Authenticated (Contributor+) Arbitrary Nonce GenerationEPSS 0.5%CVE-2024-32600HIGHWordPress Master Slider plugin <= 3.9.5 - PHP Object Injection vulnerabilityEPSS 0.5%CVE-2024-1449MEDIUMMaster Slider – Responsive Touch Slider <= 3.9.10 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.4%CVE-2024-4633MEDIUMSlider & Popup Builder by Depicter – Add Image Slider, Carousel Slider, Exit Intent Popup, Popup Modal, Coupon Popup, Post Slider Carousel <= 3.2.1- Authenticated (Author+) Stored Cross-Site ScriptingEPSS 0.4%CVE-2024-1396MEDIUMShortcodes and extra features for Phlox theme <= 2.15.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'title_tag'EPSS 0.4%CVE-2023-47508HIGHWordPress Master Slider Pro Plugin <= 3.6.5 is vulnerable to Cross Site Scripting (XSS)EPSS 0.4%CVE-2024-1348MEDIUMShortcodes and extra features for Phlox theme <= 2.15.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom JSEPSS 0.4%CVE-2024-1357MEDIUMShortcodes and extra features for Phlox theme <= 2.15.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'aux_timeline' ShortcodeEPSS 0.4%CVE-2024-1533MEDIUMShortcodes and extra features for Phlox theme <= 2.15.7 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.4%CVE-2024-50500MEDIUMWordPress Phlox Core Elements plugin <= 2.17.4 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2024-6339MEDIUMPhlox PRO <= 5.16.4 - Reflected Cross-Site Scripting via Search ParametersEPSS 0.4%