Vulnerabilidades em Saturday Drive

14 resultados
CVE-2023-37979HIGHWordPress Ninja Forms Plugin <= 3.6.25 is vulnerable to Cross Site Scripting (XSS)EPSS 6.0%CVE-2021-34647MEDIUMNinja Forms <= 3.5.7 Sensitive Information DisclosureEPSS 1.1%CVE-2023-35909MEDIUMWordPress Ninja Forms Plugin <= 3.6.25 is vulnerable to Denial of Service AttackEPSS 0.6%CVE-2021-34648MEDIUMNinja Forms <= 3.5.7 Unprotected REST-API to Email InjectionEPSS 0.6%CVE-2023-36505MEDIUMWordPress Ninja Forms Plugin <= 3.6.24 is vulnerable to Arbitrary File DeletionEPSS 0.6%CVE-2024-26019MEDIUMNinja Forms prior to 3.8.1 contains a cross-site scripting vulnerability in submit processing. If this vulnerability is exploited, an arbitrEPSS 0.5%CVE-2021-36827MEDIUMWordPress Ninja Forms Contact Form plugin <= 3.6.9 - Authenticated Stored Cross-Site Scripting (XSS) vulnerabilityEPSS 0.5%CVE-2024-37934MEDIUMWordPress Ninja Forms plugin <= 3.8.4 - Subscriber+ Arbitrary Shortcode Execution vulnerabilityEPSS 0.5%CVE-2024-29220MEDIUMNinja Forms prior to 3.8.1 contains a cross-site scripting vulnerability in custom fields for labels. If this vulnerability is exploited, anEPSS 0.5%CVE-2023-38386HIGHWordPress Ninja Forms plugin <= 3.6.25 - Contributor+ Broken Access Control vulnerabilityEPSS 0.4%CVE-2023-38393HIGHWordPress Ninja Forms plugin <= 3.6.25 - Subscriber+ Broken Access Control vulnerabilityEPSS 0.4%CVE-2024-25572HIGHCross-site request forgery (CSRF) vulnerability exists in Ninja Forms prior to 3.4.31. If a website administrator views a malicious page whiEPSS 0.3%CVE-2024-43999MEDIUMWordPress Ninja Forms plugin <= 3.8.11 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2024-39628MEDIUMWordPress Ninja Forms plugin <= 3.8.6 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%