Vulnerabilidades em weDevs
84 resultadosCVE-2023-34382MEDIUMWordPress Dokan Plugin <= 3.7.19 is vulnerable to PHP Object InjectionEPSS 0.5%CVE-2024-6666HIGHWP ERP <= 1.13.0 - Authenticated (Accounting Manager+) SQL Injection via vendor_idEPSS 0.5%CVE-2024-12015HIGHSQL Injection in WordPress Project Manager PluginEPSS 0.5%CVE-2024-13752MEDIUMWP Project Manager <= 2.6.17 - Missing Authorization to Authenticated (Subscriber+) Limited Arbitrary Options UpdateEPSS 0.5%CVE-2023-40003MEDIUMWordPress WP Project Manager plugin <= 2.6.7 - Broken Access Control vulnerabilityEPSS 0.5%CVE-2023-34008HIGHWordPress WP ERP Plugin <= 1.12.3 is vulnerable to Cross Site Scripting (XSS)EPSS 0.5%CVE-2024-38693HIGHWordPress WP User Frontend plugin <= 4.0.7 - SQL Injection vulnerabilityEPSS 0.4%CVE-2024-12195MEDIUMWP Project Manager – Task, team, and project management plugin featuring kanban board and gantt charts <= 2.6.16 - Authenticated (Subscriber+) SQL InjectionEPSS 0.4%CVE-2024-8739MEDIUMReCaptcha Integration for WordPress <= 1.2.5 - Reflected Cross-Site ScriptingEPSS 0.4%CVE-2025-5931HIGHDokan Pro <= 4.0.5 - Authenticated (Vendor+) Privilege EscalationEPSS 0.4%CVE-2023-1844MEDIUMSubscribe2 <= 10.40 - Missing AuthorizationEPSS 0.4%CVE-2024-13500MEDIUMWP Project Manager <= 2.6.17 - Authenticated (Subscriber+) SQL Injection via orderby ParameterEPSS 0.4%CVE-2023-49860MEDIUMWordPress WP Project Manager Plugin <= 2.6.7 is vulnerable to Cross Site Scripting (XSS)EPSS 0.4%CVE-2024-10548MEDIUMWP Project Manager <= 2.6.15 - Authenticated (Subscriber+) Sensitive Information Exposure via Project Task List REST APIEPSS 0.4%CVE-2020-36735MEDIUMWP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting <= 1.6.3 - Cross-Site Request Forgery BypassEPSS 0.4%CVE-2024-34822MEDIUMWordPress weMail plugin <= 1.14.2 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2020-36745MEDIUMWP Project Manager <= 2.4.0 - Cross-Site Request Forgery BypassEPSS 0.4%CVE-2024-34442MEDIUMWordPress weDocs plugin <= 2.1.4 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2024-47640HIGHWordPress WP ERP plugin <= 1.13.2 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.3%CVE-2025-47540MEDIUMWordPress weMail plugin <= 1.14.13 - Sensitive Data Exposure VulnerabilityEPSS 0.3%