Vulnerabilidades em buildwps
10 resultadosAnálise Vexday
O fornecedor buildwps apresenta presença modesta na base de vulnerabilidades com 4 CVEs registradas, nenhuma atualmente sob exploração ativa confirmada. A fraqueza dominante é exposição de informações (CWE-200), sem vulnerabilidades críticas ou publicações recentes, indicando um risco baixo no panorama atual.
CVE-2026-0551HIGHPPWP – Password Protect Pages <= 1.9.18 - Authenticated (Contributor+) PHP Object Injection via post_protection_rolesEPSS 0.5%CVE-2024-0620MEDIUMPPWP – Password Protect Pages <= 1.8.9 - Protection Mechanism BypassEPSS 0.5%CVE-2024-11280MEDIUMPPWP – Password Protect Pages <= 1.9.5 - Unauthenticated Content Restriction Bypass to Sensitive Information ExposureEPSS 0.4%CVE-2025-3923MEDIUMPrevent Direct Access – Protect WordPress Files <= 2.8.8 - Unauthenticated Sensitive Information ExposureEPSS 0.4%CVE-2025-3861MEDIUMPrevent Direct Access 2.8.6 - 2.8.8.2 - Incorrect Authorization to Authenticated (Contributor+) Multiple Media ActionsEPSS 0.3%CVE-2026-3835MEDIUMPrevent Direct Access – Protect WordPress Files <= 2.8.8.8 - Unauthenticated Protected File AccessEPSS 0.3%CVE-2026-3639MEDIUMPPWP – Password Protect Pages <= 1.9.21 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode AttributesEPSS 0.2%CVE-2025-10005MEDIUMPassword Protect WordPress Lite <= 1.9.20 - Insecure Direct Object Reference to Authenticated (Contributor+) Password Protected Post Password UpdateEPSS 0.2%CVE-2025-11729MEDIUMPPWP: Password Protect Pages, Posts & Full or Partial Content <= 1.9.15 - Improper Authorization To Authenticated (Contributor+) Master Password ExposureEPSS 0.2%CVE-2025-9878MEDIUMPassword Protect WordPress Lite <= 1.9.21 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.2%