WordPress · Email Encoder
CVE-2026-5776: CWE-79: Cross-Site Scripting (XSS) en Email Encoder
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Email Encoder. Email Encoder: 0 hasta 2.4.7
DIRECTORIO CVE · 2026
Página 119 de 163. Los registros están ordenados por fecha oficial de publicación, del más reciente al más antiguo.
Registros 11801–11900 de 16.277
WordPress · Email Encoder
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Email Encoder. Email Encoder: 0 hasta 2.4.7
WordPress · 診断ジェネレータ作成プラグイン
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en 診断ジェネレータ作成プラグイン. 診断ジェネレータ作成プラグイン: 0 hasta 1.4.16
WordPress · AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress. AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress: 0 hasta 10.8.2
WordPress · All in One SEO – Powerful SEO Plugin to Boost SEO Rankings & Increase Traffic
El registro oficial identifica la vulnerabilidad «CWE-200: Exposición de información sensible a un actor no autorizado» en All in One SEO – Powerful SEO Plugin to Boost SEO Rankings & Increase Traffic. All in One SEO – Powerful SEO Plugin to Boost SEO Rankings & Increase Traffic: 0 hasta 4.9.7
WordPress · Gift Cards For WooCommerce Pro
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Gift Cards For WooCommerce Pro. Gift Cards For WooCommerce Pro: n/a hasta 4.2.6
WordPress · PDF for Elementor Forms + Drag And Drop Template Builder
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en PDF for Elementor Forms + Drag And Drop Template Builder. PDF for Elementor Forms + Drag And Drop Template Builder: n/a hasta 5.5.1
Microsoft Office · rsync
El registro oficial identifica la vulnerabilidad «Lectura fuera de límites (Out-of-bounds Read)» en rsync. rsync: 0 hasta 3.4.3
WordPress · YITH WooCommerce Product Add-Ons
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en YITH WooCommerce Product Add-Ons. YITH WooCommerce Product Add-Ons: n/a hasta 4.29.0
WordPress · Creative Mail – Easier WordPress & WooCommerce Email Marketing
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Creative Mail – Easier WordPress & WooCommerce Email Marketing. Creative Mail – Easier WordPress & WooCommerce Email Marketing: 0 hasta 1.6.9
WordPress · AI Chatbot & Workflow Automation by AIWU
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en AI Chatbot & Workflow Automation by AIWU. AI Chatbot & Workflow Automation by AIWU: 0 hasta 1.4.14
WordPress · Image Photo Gallery Final Tiles Grid
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Image Photo Gallery Final Tiles Grid. Image Photo Gallery Final Tiles Grid: n/a hasta 3.6.11
WordPress · WpBookingly
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en WpBookingly. WpBookingly: n/a hasta 1.2.9
WordPress · Visualizer
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Visualizer. Visualizer: n/a hasta 4.0.0
WordPress · Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe. Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe: 0 hasta 28.1.6
NGINX · NGINX JavaScript
El registro oficial identifica la vulnerabilidad «CWE-122: Desbordamiento de búfer en memoria dinámica (Heap-based Buffer Overflow)» en NGINX JavaScript. NGINX JavaScript: 0.9.4 hasta 0.9.9
WordPress · Kirki – Freeform Page Builder, Website Builder & Customizer
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Kirki – Freeform Page Builder, Website Builder & Customizer. Kirki – Freeform Page Builder, Website Builder & Customizer: 0 hasta 6.0.6
WordPress · Kirki – Freeform Page Builder, Website Builder & Customizer
El registro oficial identifica la vulnerabilidad «CWE-23: Relative Path Traversal» en Kirki – Freeform Page Builder, Website Builder & Customizer. Kirki – Freeform Page Builder, Website Builder & Customizer: 0 hasta 6.0.6
WordPress · Piotnet Addons For Elementor Pro
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Piotnet Addons For Elementor Pro. Piotnet Addons For Elementor Pro: 0 hasta 7.1.70
WordPress · Piotnet Forms
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Piotnet Forms. Piotnet Forms: 0 hasta 2.1.40
WordPress · Funnel Builder for WooCommerce Checkout
El registro oficial identifica la vulnerabilidad «Falta de autorización» en Funnel Builder for WooCommerce Checkout. Funnel Builder for WooCommerce Checkout: 0 hasta 3.15.0.3
Windows Server · Windows 11 Version 24H2 / Windows 11 Version 25H2 / Windows 11 version 26H1
El registro oficial identifica la vulnerabilidad «CWE-77: vulnerabilidad de seguridad» en Windows 11 Version 24H2 / Windows 11 Version 25H2 / Windows 11 version 26H1. Windows 11 Version 24H2: 10.0.26100.0 hasta 10.0.26100.8655; Windows 11 Version 25H2: 10.0.26200.0 hasta 10.0.26200.8655; Windows 11 version 26H1: 10.0.28000.0 hasta 10.0.28000.2269; Windows Server 2025: 10.0.26100.0 hasta 10.0.26100.32995; Windows Server 2025 (Server Core installation): 10.0.26100.0 hasta 10.0.26100.32995
WordPress · Presto Player
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Presto Player. Presto Player: n/a hasta 4.1.3
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 5a1436beec5744029f3ac90b6fe71a698dcd6155 hasta ae7e95638d956d556d74b9abb9e780d3bd3dcd9e, 5a1436beec5744029f3ac90b6fe71a698dcd6155 hasta 1d7f07df450bac3301938fbc4251f2611be4084e, 5a1436beec5744029f3ac90b6fe71a698dcd6155 hasta 76641449b28979ebd6c02e9598367e119e385236, 5a1436beec5744029f3ac90b6fe71a698dcd6155 hasta 9f1cbca178c03188e201ed175251372149bb25f2, 5a1436beec5744029f3ac90b6fe71a698dcd6155 hasta eb34e243df57e32f4c08fa191f3602ea19076276, 5a1436beec5744029f3ac90b6fe71a698dcd6155 hasta 77d55bc8675ee851ed639dc9be77325a8024cf67; Linux: 2.6.34, 0 hasta 2.6.34, 5.10.258 hasta 5.10.*, 5.15.209 hasta 5.15.*, 6.1.175 hasta 6.1.*, 6.6.140 hasta 6.6.*
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 2d4d1eea540b27c72488fd1914674c42473d53df hasta a1793a48881ec8d26e9c79b0ee65753f1c6846a4, 2d4d1eea540b27c72488fd1914674c42473d53df hasta 1abd50fc3cfa16fc2074a3c8c2729c50fd9d7043, 2d4d1eea540b27c72488fd1914674c42473d53df hasta 6d63615c796c085b4984e3031b9fa77fffb47360, 2d4d1eea540b27c72488fd1914674c42473d53df hasta 2aa77a18dc7f2670497fe3ee5acbeda0b57659e5, 2d4d1eea540b27c72488fd1914674c42473d53df hasta 26d3a97ad46c7a9226ec04d4bf35bd4998a97d16, 2d4d1eea540b27c72488fd1914674c42473d53df hasta 8637dfb4c1d8a7026ef681f2477c6de8b71c4003; Linux: 4.4, 0 hasta 4.4, 5.10.259 hasta 5.10.*, 5.15.210 hasta 5.15.*, 6.1.176 hasta 6.1.*, 6.6.140 hasta 6.6.*
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 0c2204a4ad710d95d348ea006f14ba926e842ffd hasta b48fc702b20233b809f01053232c3cd5083c97b4, 0c2204a4ad710d95d348ea006f14ba926e842ffd hasta 991c431077b19176d3fe3bb54054c063776a8cdc, 0c2204a4ad710d95d348ea006f14ba926e842ffd hasta 94914731ca0b99899dceadd80d2df00584a688ca, 0c2204a4ad710d95d348ea006f14ba926e842ffd hasta e6f6cd501fb54060940a6eb3f4103eeb5e426ae7, 0c2204a4ad710d95d348ea006f14ba926e842ffd hasta 3efaad55cad1ded429e3a873bfece389058a526b, 0c2204a4ad710d95d348ea006f14ba926e842ffd hasta 35fb4a0c077c5d1049c2628b769e0a1b1e65df0d; Linux: 5.7, 0 hasta 5.7, 5.10.265 hasta 5.10.*, 5.15.216 hasta 5.15.*, 6.1.183 hasta 6.1.*, 6.6.140 hasta 6.6.*
WordPress · Ajax Load More
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Ajax Load More. Ajax Load More: 0 hasta 7.8.4
WordPress · WP Maps
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en WP Maps. WP Maps: 0 hasta 4.9.3
WordPress · WP Photo Album Plus
El registro oficial identifica la vulnerabilidad «CWE-89: SQL Injection» en WP Photo Album Plus. WP Photo Album Plus: 0 hasta 9.1.11.001
WordPress · Autoptimize / Clearfy Cache / Speed Optimizer
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Autoptimize / Clearfy Cache / Speed Optimizer. Autoptimize: 0 hasta 3.1.15; Clearfy Cache: 0 hasta 2.4.2; Speed Optimizer: 0 hasta 7.7.9
Microsoft Office · Mattermost
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en Mattermost. Mattermost: 11.5.0 hasta 11.5.1, 10.11.0 hasta 10.11.13, 11.4.0 hasta 11.4.3, 11.6.0, 11.5.2, 10.11.14
WordPress · Feeds for YouTube (YouTube video, channel, and gallery plugin)
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Feeds for YouTube (YouTube video, channel, and gallery plugin). Feeds for YouTube (YouTube video, channel, and gallery plugin): 0 hasta 2.6.4
WordPress · AI Engine – The Chatbot, AI Framework & MCP for WordPress
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en AI Engine – The Chatbot, AI Framework & MCP for WordPress. AI Engine – The Chatbot, AI Framework & MCP for WordPress: 3.4.9
WordPress · Essential Chat Support
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Essential Chat Support. Essential Chat Support: 0 hasta 1.0.1
WordPress · Notify Odoo
El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en Notify Odoo. Notify Odoo: 0 hasta 1.0.1
WordPress · Classified Listing – AI-Powered Classified ads & Business Directory Plugin
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Classified Listing – AI-Powered Classified ads & Business Directory Plugin. Classified Listing – AI-Powered Classified ads & Business Directory Plugin: 0 hasta 5.3.10
WordPress · NEX-Forms – Ultimate Forms Plugin for WordPress
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en NEX-Forms – Ultimate Forms Plugin for WordPress. NEX-Forms – Ultimate Forms Plugin for WordPress: 0 hasta 9.1.12
WordPress · The7 — Website and eCommerce Builder for WordPress
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en The7 — Website and eCommerce Builder for WordPress. The7 — Website and eCommerce Builder for WordPress: 0 hasta 14.3.2
WordPress · Advanced Custom Fields: Font Awesome Field
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Advanced Custom Fields: Font Awesome Field. Advanced Custom Fields: Font Awesome Field: 0 hasta 5.0.2
WordPress · Quick Playground
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Quick Playground. Quick Playground: 0 hasta 1.3.3
WordPress · Frontend Admin by DynamiApps
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en Frontend Admin by DynamiApps. Frontend Admin by DynamiApps: 0 hasta 3.28.36
WordPress · Receive Notifications After Form Submitting – Form Notify for Any Forms
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en Receive Notifications After Form Submitting – Form Notify for Any Forms. Receive Notifications After Form Submitting – Form Notify for Any Forms: 0 hasta 1.1.10
WordPress · Smartcat Translator for WPML
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Smartcat Translator for WPML. Smartcat Translator for WPML: 0 hasta 3.1.77
Linux · Linux
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en Linux. Linux: bfedb589252c01fa505ac9f6f2a3d5d68d707ef4 hasta 93d4ba49d18e3d7fb41a9927c2d0cca5e9dfefd6, bfedb589252c01fa505ac9f6f2a3d5d68d707ef4 hasta 15b828a46f305ae9f05a7c16914b3ce273474205, bfedb589252c01fa505ac9f6f2a3d5d68d707ef4 hasta 4709234fd1b95136ceb789f639b1e7ea5de1b181, bfedb589252c01fa505ac9f6f2a3d5d68d707ef4 hasta 8f907d345bae8f4b3f004c5abc56bf2dfb851ea7, bfedb589252c01fa505ac9f6f2a3d5d68d707ef4 hasta 6e5b51e74a40d377bcd3081dd33fbaa0e1aa7e3d, bfedb589252c01fa505ac9f6f2a3d5d68d707ef4 hasta 2a93a4fac7b6051d3be7cd1b015fe7320cd0404d; Linux: 4.10, 0 hasta 4.10, 5.10.256 hasta 5.10.*, 5.15.207 hasta 5.15.*, 6.1.173 hasta 6.1.*, 6.6.139 hasta 6.6.*
Microsoft Office · open-webui
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en open-webui. open-webui: < 0.9.3
Microsoft Office · tabby
El registro oficial identifica la vulnerabilidad «CWE-78: vulnerabilidad de seguridad» en tabby. tabby: < 1.0.233
Microsoft Office · open-webui
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en open-webui. open-webui: < 0.8.0
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9 hasta a7fb771314fb3a265d30f8ac245869a367ab065c, e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9 hasta 47c6e37a77b10e74f70d845ba4ea5d3cafa00336, e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9 hasta 1aa60fea7f637c071f529ad6784aecca2f2f0c5f, e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9 hasta c1d95c995d5bcb24b639200a899eda59cb1e6d64, e2f34481b24db2fd634b5edb0a5bd0e4d38cc6e9 hasta 996454bc0da84d5a1dedb1a7861823087e01a7ae; Linux: 5.15, 0 hasta 5.15, 6.6.141 hasta 6.6.*, 6.12.88 hasta 6.12.*, 6.18.30 hasta 6.18.*, 7.0.7 hasta 7.0.*
WordPress · FOX – Currency Switcher Professional for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en FOX – Currency Switcher Professional for WooCommerce. FOX – Currency Switcher Professional for WooCommerce: 0 hasta 1.4.5
WordPress · Burst Statistics – Privacy-Friendly WordPress Analytics (Google Analytics Alternative)
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en Burst Statistics – Privacy-Friendly WordPress Analytics (Google Analytics Alternative). Burst Statistics – Privacy-Friendly WordPress Analytics (Google Analytics Alternative): 3.4.0 hasta 3.4.1.1
WordPress · LearnPress – WordPress LMS Plugin for Create and Sell Online Courses
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en LearnPress – WordPress LMS Plugin for Create and Sell Online Courses. LearnPress – WordPress LMS Plugin for Create and Sell Online Courses: 0 hasta 4.3.5
WordPress · My Calendar – Accessible Event Manager
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en My Calendar – Accessible Event Manager. My Calendar – Accessible Event Manager: 0 hasta 3.7.9
WordPress · Media Sync
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Media Sync. Media Sync: 0 hasta 1.4.9
WordPress · InfusedWoo Pro
El registro oficial identifica la vulnerabilidad «CWE-918: vulnerabilidad de seguridad» en InfusedWoo Pro. InfusedWoo Pro: 0 hasta 5.1.2
WordPress · InfusedWoo Pro
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en InfusedWoo Pro. InfusedWoo Pro: 0 hasta 5.1.2
WordPress · InfusedWoo Pro
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en InfusedWoo Pro. InfusedWoo Pro: 0 hasta 5.1.2
WordPress · InfusedWoo Pro
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en InfusedWoo Pro. InfusedWoo Pro: 0 hasta 5.1.2
WordPress · Royal Addons for Elementor – Addons and Templates Kit for Elementor
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Royal Addons for Elementor – Addons and Templates Kit for Elementor. Royal Addons for Elementor – Addons and Templates Kit for Elementor: 0 hasta 1.7.1058
WordPress · GLS Shipping for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en GLS Shipping for WooCommerce. GLS Shipping for WooCommerce: 0 hasta 1.4.0
WordPress · Career Section
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Career Section. Career Section: 0 hasta 1.7
WordPress · Meta Field Block – Display custom fields in the Block Editor without coding
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Meta Field Block – Display custom fields in the Block Editor without coding. Meta Field Block – Display custom fields in the Block Editor without coding: 0 hasta 1.5.2
WordPress · Taskbuilder – Project Management & Task Management Tool With Kanban Board
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Taskbuilder – Project Management & Task Management Tool With Kanban Board. Taskbuilder – Project Management & Task Management Tool With Kanban Board: 0 hasta 5.0.6
WordPress · MW WP Form
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en MW WP Form. MW WP Form: 0 hasta 5.1.2
WordPress · CC Child Pages
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en CC Child Pages. CC Child Pages: 0 hasta 2.1.1
WordPress · User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder. User Registration & Membership – Free & Paid Memberships, Subscriptions, Content Restriction, User Profile, Custom User Registration & Login Builder: 0 hasta 5.1.5
WordPress · Unlimited Elements For Elementor
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Unlimited Elements For Elementor. Unlimited Elements For Elementor: 0 hasta 2.0.7
WordPress · Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder. Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder: 0 hasta 6.1.21
WordPress · Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder. Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder: 0 hasta 6.2.0
WordPress · LatePoint – Calendar Booking Plugin for Appointments and Events
El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en LatePoint – Calendar Booking Plugin for Appointments and Events. LatePoint – Calendar Booking Plugin for Appointments and Events: 0 hasta 5.3.2
WordPress · Envira Gallery – Image Photo Gallery, Albums, Video Gallery, Slideshows & More
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Envira Gallery – Image Photo Gallery, Albums, Video Gallery, Slideshows & More. Envira Gallery – Image Photo Gallery, Albums, Video Gallery, Slideshows & More: 0 hasta 1.12.4
WordPress · The Plus Addons for Elementor – Addons for Elementor, Page Templates, Widgets, Mega Menu, WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en The Plus Addons for Elementor – Addons for Elementor, Page Templates, Widgets, Mega Menu, WooCommerce. The Plus Addons for Elementor – Addons for Elementor, Page Templates, Widgets, Mega Menu, WooCommerce: 0 hasta 6.4.11
WordPress · Essential Addons for Elementor – Popular Elementor Templates & Widgets
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en Essential Addons for Elementor – Popular Elementor Templates & Widgets. Essential Addons for Elementor – Popular Elementor Templates & Widgets: 0 hasta 6.5.13
NGINX · fleet
El registro oficial identifica la vulnerabilidad «CWE-290: vulnerabilidad de seguridad» en fleet. fleet: < 4.80.1
WordPress · Database Backup for WordPress
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Database Backup for WordPress. Database Backup for WordPress: 0 hasta 2.5.2
WordPress · Database Backup for WordPress
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Database Backup for WordPress. Database Backup for WordPress: 0 hasta 2.5.2
WordPress · Database Backup for WordPress
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Database Backup for WordPress. Database Backup for WordPress: 0 hasta 2.5.2
WordPress · Motors – Car Dealership & Classified Listings Plugin
El registro oficial identifica la vulnerabilidad «CWE-73: vulnerabilidad de seguridad» en Motors – Car Dealership & Classified Listings Plugin. Motors – Car Dealership & Classified Listings Plugin: 0 hasta 1.4.107
WordPress · WP Encryption – One Click Free SSL Certificate & SSL / HTTPS Redirect, Security & SSL Scan
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en WP Encryption – One Click Free SSL Certificate & SSL / HTTPS Redirect, Security & SSL Scan. WP Encryption – One Click Free SSL Certificate & SSL / HTTPS Redirect, Security & SSL Scan: 0 hasta 7.8.5.10
WordPress · ManageWP Worker
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en ManageWP Worker. ManageWP Worker: 0 hasta 4.9.31
WordPress · Bold Page Builder
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Bold Page Builder. Bold Page Builder: 0 hasta 5.6.8
WordPress · coreActivity: Activity Logging for WordPress
El registro oficial identifica la vulnerabilidad «CWE-502: Deserialización de datos no confiables» en coreActivity: Activity Logging for WordPress. coreActivity: Activity Logging for WordPress: 0 hasta 3.0
WordPress · Charitable – Donation Plugin for WordPress – Fundraising with Recurring Donations & More
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Charitable – Donation Plugin for WordPress – Fundraising with Recurring Donations & More. Charitable – Donation Plugin for WordPress – Fundraising with Recurring Donations & More: 0 hasta 1.8.10.4
WordPress · Blog2Social: Social Media Auto Post & Scheduler
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Blog2Social: Social Media Auto Post & Scheduler. Blog2Social: Social Media Auto Post & Scheduler: 0 hasta 8.9.0
WordPress · Tutor LMS – eLearning and online course solution
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Tutor LMS – eLearning and online course solution. Tutor LMS – eLearning and online course solution: 0 hasta 3.9.9
WordPress · Cost of Goods: Product Cost & Profit Calculator for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Cost of Goods: Product Cost & Profit Calculator for WooCommerce. Cost of Goods: Product Cost & Profit Calculator for WooCommerce: 0 hasta 4.1.0
WordPress · JoomSport – for Sports: Team & League, Football, Hockey & more
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en JoomSport – for Sports: Team & League, Football, Hockey & more. JoomSport – for Sports: Team & League, Football, Hockey & more: 0 hasta 5.7.7
WordPress · Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder. Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder: 0 hasta 6.2.1
WordPress · Custom Twitter Feeds – A Tweets Widget or X Feed Widget
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Custom Twitter Feeds – A Tweets Widget or X Feed Widget. Custom Twitter Feeds – A Tweets Widget or X Feed Widget: 0 hasta 2.5.4
WordPress · Avada (Fusion) Builder
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Avada (Fusion) Builder. Avada (Fusion) Builder: 0 hasta 3.15.1
WordPress · Avada (Fusion) Builder
El registro oficial identifica la vulnerabilidad «CWE-36: Absolute Path Traversal» en Avada (Fusion) Builder. Avada (Fusion) Builder: 0 hasta 3.15.2
WordPress · ProfileGrid – User Profiles, Groups and Communities
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en ProfileGrid – User Profiles, Groups and Communities. ProfileGrid – User Profiles, Groups and Communities: 0 hasta 5.9.8.4
WordPress · ProfileGrid – User Profiles, Groups and Communities
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en ProfileGrid – User Profiles, Groups and Communities. ProfileGrid – User Profiles, Groups and Communities: 0 hasta 5.9.8.4
WordPress · ProfileGrid – User Profiles, Groups and Communities
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en ProfileGrid – User Profiles, Groups and Communities. ProfileGrid – User Profiles, Groups and Communities: 0 hasta 5.9.8.4
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 7c722a7f44e0c1f9714084152226bc7bd644b7e3 hasta 1d3ad69484dc1cc53be62d2554e7ef038a627af9, 7c722a7f44e0c1f9714084152226bc7bd644b7e3 hasta f85b1c6af5bc3872f994df0a5688c1162de07a62; Linux: 6.19, 0 hasta 6.19, 6.19.9 hasta 6.19.*, 7.0 hasta *
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 2a25e66d676dfb9b018abd503deed3d38a892dec hasta b2dd9abf8c06cfcbcf242321fd54ae51a4807705, 2a25e66d676dfb9b018abd503deed3d38a892dec hasta 6f91f3f087194c114d6d8ea4591b850bb00672f8, 2a25e66d676dfb9b018abd503deed3d38a892dec hasta cd41e0d1df8fcf5eae294657da52b50d1ce03246, 2a25e66d676dfb9b018abd503deed3d38a892dec hasta 09ff0099c6cf148ff1f7053b5b6c84beb1c2ef8d, 2a25e66d676dfb9b018abd503deed3d38a892dec hasta d6d5febd12452b7fd951fdd15c3ec262f01901a4; Linux: 6.2, 0 hasta 6.2, 6.6.130 hasta 6.6.*, 6.12.78 hasta 6.12.*, 6.18.19 hasta 6.18.*, 6.19.9 hasta 6.19.*
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 7627a0edef548c4c4dea62df51cc26bfe5bbcab8 hasta f897b72cc74d24e7106716184f450d4045a6289b, 7627a0edef548c4c4dea62df51cc26bfe5bbcab8 hasta 87f0349beaacab2ac60c4a1b6dcff254cef7d5a0, 7627a0edef548c4c4dea62df51cc26bfe5bbcab8 hasta a4bfb1947eda615fe0b2fc54beb6bedc03372e34, 7627a0edef548c4c4dea62df51cc26bfe5bbcab8 hasta b3b1d3ae1d87bc9398fb715c945968bf4c75a09a; Linux: 6.9, 0 hasta 6.9, 6.12.78 hasta 6.12.*, 6.18.19 hasta 6.18.*, 6.19.9 hasta 6.19.*, 7.0 hasta *
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 4602e5757bcceb231c3a13c36c373ad4a750eddb hasta 05d239f2c95e66e27e7fb4e99ee07eb56e3e34b0, 4602e5757bcceb231c3a13c36c373ad4a750eddb hasta 6f92a7a8b48a523f910ef25dd83808710724f59b, 4602e5757bcceb231c3a13c36c373ad4a750eddb hasta 09d620555e59768776090073a2c59d2bc8506eb3, 4602e5757bcceb231c3a13c36c373ad4a750eddb hasta 97c5550b763171dbef61e6239cab372b9f9cd4a2; Linux: 6.9, 0 hasta 6.9, 6.12.78 hasta 6.12.*, 6.18.19 hasta 6.18.*, 6.19.9 hasta 6.19.*, 7.0 hasta *
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 176fdcbddfd288408ce8571c1760ad618d962096 hasta 214b6bde0e941a34ba877cf2f26f85d62fb5d598, 176fdcbddfd288408ce8571c1760ad618d962096 hasta d1c991c860496d97044802ea54b30f20db468c1d, 176fdcbddfd288408ce8571c1760ad618d962096 hasta 9478c166c46934160135e197b049b5a05753f2ad; Linux: 6.7, 0 hasta 6.7, 6.18.19 hasta 6.18.*, 6.19.9 hasta 6.19.*, 7.0 hasta *
Microsoft Office · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 6c0cedd1ef9527ef13e66875746570e76a3188a7 hasta 41dce4dae583a8ce06a7ebf4ce704c46a142957c, 6c0cedd1ef9527ef13e66875746570e76a3188a7 hasta bb7fc2498c3bb25fa6a91f22f4760005325cfbd5, 6c0cedd1ef9527ef13e66875746570e76a3188a7 hasta 270277c2ab631044867adb1bd2f2433d3892de6e, 6c0cedd1ef9527ef13e66875746570e76a3188a7 hasta 45038e03f15e992c48603fff8c6b1c9be5397ac9, 6c0cedd1ef9527ef13e66875746570e76a3188a7 hasta 0e06cc511c61cff1591e5435a207759adcc76b6d, 6c0cedd1ef9527ef13e66875746570e76a3188a7 hasta d3a3caf44c8ec26f5d63dc17c1c7242effa60ebc; Linux: 4.15, 0 hasta 4.15, 5.15.203 hasta 5.15.*, 6.1.167 hasta 6.1.*, 6.6.130 hasta 6.6.*, 6.12.78 hasta 6.12.*
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 3bbf3565f48ce3999b5a12cde946f81bd4475312 hasta a4123fe5d9122eef9852e4921f7cc463420f30d4, 3bbf3565f48ce3999b5a12cde946f81bd4475312 hasta 816fa1dfae4532e851b1fe6b2434c753ecbd86c7, 3bbf3565f48ce3999b5a12cde946f81bd4475312 hasta 01651e7751edbbc0fb4598f8367a3dabcfc8c182, 3bbf3565f48ce3999b5a12cde946f81bd4475312 hasta ba3bca40f9f25c053f69413e5f4a41dd0fd762bf, 3bbf3565f48ce3999b5a12cde946f81bd4475312 hasta 737410b32bd615b321da4fbeda490351b9af5e8b, 3bbf3565f48ce3999b5a12cde946f81bd4475312 hasta 87d0f901a9bd8ae6be57249c737f20ac0cace93d; Linux: 4.7, 0 hasta 4.7, 6.1.167 hasta 6.1.*, 6.6.130 hasta 6.6.*, 6.12.78 hasta 6.12.*, 6.18.19 hasta 6.18.*
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: f0e1a0643a59bf1f922fa209cec86a170b784f3f hasta 41423912f7ac7494ccd6eef411227b4efce740e0, f0e1a0643a59bf1f922fa209cec86a170b784f3f hasta 522acaae34aa7e05859260056b39c7c030592a0c, f0e1a0643a59bf1f922fa209cec86a170b784f3f hasta 5131dbec2c10961b34f844bc30b400c3fa0bcc72, f0e1a0643a59bf1f922fa209cec86a170b784f3f hasta 83236b2e43dba00bee5b82eb5758816b1a674f6a; Linux: 6.12, 0 hasta 6.12, 6.12.78 hasta 6.12.*, 6.18.20 hasta 6.18.*, 6.19.9 hasta 6.19.*, 7.0 hasta *