Vulnerabilidades em cozmoslabs

42 resultados
CVE-2025-68514MEDIUMWordPress Paid Member Subscriptions plugin <= 2.16.8 - Insecure Direct Object References (IDOR) vulnerabilityEPSS 0.3%CVE-2024-22142HIGHWordPress Profile Builder Pro Plugin <= 3.10.0 is vulnerable to Cross Site Scripting (XSS)EPSS 0.3%CVE-2025-58600MEDIUMWordPress Paid Member Subscriptions Plugin <= 2.15.9 - Broken Access Control VulnerabilityEPSS 0.3%CVE-2025-58592HIGHWordPress TranslatePress Plugin <= 2.10.2 - Deserialization of untrusted data VulnerabilityEPSS 0.3%CVE-2024-22140HIGHWordPress Profile Builder Pro Plugin <= 3.10.0 is vulnerable to Cross Site Request Forgery (CSRF)EPSS 0.3%CVE-2025-49292MEDIUMWordPress Profile Builder plugin <= 3.13.8 - Content Spoofing VulnerabilityEPSS 0.3%CVE-2023-47669MEDIUMWordPress Profile Builder Plugin <= 3.10.3 is vulnerable to Cross Site Request Forgery (CSRF)EPSS 0.3%CVE-2025-2314MEDIUMUser Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor <= 3.13.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via ShortcodeEPSS 0.3%CVE-2021-36915MEDIUMWordPress Profile Builder plugin <= 3.6.0 - Cross-Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%CVE-2025-4671MEDIUMProfile Builder <= 3.13.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via user_meta and compare ShortcodesEPSS 0.2%CVE-2025-66074CRITICALWordPress WP Webhooks plugin <= 3.3.8 - Arbitrary File Upload vulnerabilityEPSS 0.2%CVE-2025-49870HIGHWordPress Paid Member Subscriptions plugin <= 2.15.1 - SQL Injection VulnerabilityEPSS 0.2%CVE-2026-42385HIGHWordPress Profile Builder Pro plugin <= 3.15.0 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2023-51522MEDIUMWordPress Paid Membership Subscriptions plugin <= 2.10.4 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%CVE-2024-31341MEDIUMWordPress User Profile Builder plugin <= 3.11.2 - Bypass Vulnerability vulnerabilityEPSS 0.2%CVE-2024-32728MEDIUMWordPress Paid Membership Subscriptions plugin <= 2.11.0 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%CVE-2025-11835MEDIUMPaid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction <= 2.16.4 - Missing Authorization to Unauthenticated Arbitrary Member Subscription Auto RenewalEPSS 0.2%CVE-2025-8896MEDIUMUser Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor <= 3.14.3 - Authenticated (Subscriber+) Stored Cross-Site ScriptingEPSS 0.2%CVE-2025-31088MEDIUMWordPress Paid Member Subscriptions plugin <= 2.14.3 - Cross Site Scripting (XSS) VulnerabilityEPSS 0.2%CVE-2026-39514HIGHWordPress Paid Member Subscriptions plugin <= 2.17.3 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%