WordPress · Adminify
CVE-2026-11781: CWE-200: vulnerabilidad de seguridad en Adminify
El registro oficial identifica la vulnerabilidad «CWE-200: vulnerabilidad de seguridad» en Adminify. Adminify: 0 hasta 4.2.10
DIRECTORIO CVE · 2026
4.697 registros, ordenados por fecha oficial de publicación descendente.
Mostrando 100 registros · Página 11 de 47
WordPress · Adminify
El registro oficial identifica la vulnerabilidad «CWE-200: vulnerabilidad de seguridad» en Adminify. Adminify: 0 hasta 4.2.10
WordPress · Envo's Templates & Widgets for Elementor and WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Envo's Templates & Widgets for Elementor and WooCommerce. Envo's Templates & Widgets for Elementor and WooCommerce: 0 hasta 1.4.26
WordPress · Email Subscribers & Newsletters – Email Marketing, Post Notifications & Newsletter Plugin for WordPress
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Email Subscribers & Newsletters – Email Marketing, Post Notifications & Newsletter Plugin for WordPress. Email Subscribers & Newsletters – Email Marketing, Post Notifications & Newsletter Plugin for WordPress: 0 hasta 5.9.27
WordPress · Fluent Forms
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Fluent Forms. Fluent Forms: 0 hasta 6.2.5
WordPress · Product Video Gallery for Woocommerce
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Product Video Gallery for Woocommerce. Product Video Gallery for Woocommerce: 0 hasta 1.5.1.8
WordPress · Insert Pages
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Insert Pages. Insert Pages: 0 hasta 3.11.4
WordPress · yootheme
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en yootheme. yootheme: 0 hasta 5.0.35
WordPress · Kali Forms — Contact Form & Drag-and-Drop Builder
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Kali Forms — Contact Form & Drag-and-Drop Builder. Kali Forms — Contact Form & Drag-and-Drop Builder: 0 hasta 2.4.13
WordPress · Custom Payment Gateways for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Custom Payment Gateways for WooCommerce. Custom Payment Gateways for WooCommerce: 0 hasta 2.1.0
WordPress · WP-BusinessDirectory – Business directory plugin for WordPress
El registro oficial identifica la vulnerabilidad «CWE-73: vulnerabilidad de seguridad» en WP-BusinessDirectory – Business directory plugin for WordPress. WP-BusinessDirectory – Business directory plugin for WordPress: 0 hasta 4.0.1
WordPress · Shortcodes and extra features for Phlox theme
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Shortcodes and extra features for Phlox theme. Shortcodes and extra features for Phlox theme: n/a hasta 2.17.16
WordPress · HubSpot
El registro oficial identifica la vulnerabilidad «CWE-201: vulnerabilidad de seguridad» en HubSpot. HubSpot: n/a hasta 11.3.51
WordPress · VikBooking Hotel Booking Engine & PMS
El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en VikBooking Hotel Booking Engine & PMS. VikBooking Hotel Booking Engine & PMS: n/a hasta 1.8.12
WordPress · Enable Media Replace
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Enable Media Replace. Enable Media Replace: n/a hasta 4.2.1
WordPress · ApplyOnline
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en ApplyOnline. ApplyOnline: n/a hasta 2.6.7.6
WordPress · ThumbPress
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en ThumbPress. ThumbPress: n/a hasta 6.3.2
WordPress · PrivateContent
El registro oficial identifica la vulnerabilidad «CWE-266: Asignación incorrecta de privilegios» en PrivateContent. PrivateContent: n/a hasta 9.9.2
WordPress · Woffice
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Woffice. Woffice: n/a hasta 5.4.33
WordPress · Webba Booking
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Webba Booking. Webba Booking: n/a hasta 6.4.13
WordPress · Event Organiser
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Event Organiser. Event Organiser: 0 hasta 3.12.9
WordPress · Download Manager
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Download Manager. Download Manager: 0 hasta 3.3.60
WordPress · WPBot – AI ChatBot for Live Support, Lead Generation, AI Services
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en WPBot – AI ChatBot for Live Support, Lead Generation, AI Services. WPBot – AI ChatBot for Live Support, Lead Generation, AI Services: 0 hasta 8.4.9
WordPress · Visualizer – Tables & Charts Manager with Built-in AI Generator
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Visualizer – Tables & Charts Manager with Built-in AI Generator. Visualizer – Tables & Charts Manager with Built-in AI Generator: 0 hasta 4.0.3
WordPress · MotoPress Appointment Booking
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en MotoPress Appointment Booking. MotoPress Appointment Booking: 0 hasta 2.4.5
WordPress · Tutor LMS – eLearning and online course solution
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Tutor LMS – eLearning and online course solution. Tutor LMS – eLearning and online course solution: 0 hasta 3.9.13
WordPress · GiveWP – Donation Plugin and Fundraising Platform
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en GiveWP – Donation Plugin and Fundraising Platform. GiveWP – Donation Plugin and Fundraising Platform: 0 hasta 4.16.0
WordPress · LatePoint – Calendar Booking Plugin for Appointments and Events
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en LatePoint – Calendar Booking Plugin for Appointments and Events. LatePoint – Calendar Booking Plugin for Appointments and Events: 0 hasta 5.6.3
WordPress · WP Google Review Slider
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en WP Google Review Slider. WP Google Review Slider: 0 hasta 18.1
WordPress · Video Gallery – YouTube Gallery, Playlist & Video Grid
El registro oficial identifica la vulnerabilidad «CWE-98: vulnerabilidad de seguridad» en Video Gallery – YouTube Gallery, Playlist & Video Grid. Video Gallery – YouTube Gallery, Playlist & Video Grid: 0 hasta 4.0.3
WordPress · Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Kadence Blocks — Page Builder Toolkit for Gutenberg Editor. Kadence Blocks — Page Builder Toolkit for Gutenberg Editor: 0 hasta 3.7.7
WordPress · Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Kadence Blocks — Page Builder Toolkit for Gutenberg Editor. Kadence Blocks — Page Builder Toolkit for Gutenberg Editor: 0 hasta 3.7.7
WordPress · VikBooking Hotel Booking Engine & PMS
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en VikBooking Hotel Booking Engine & PMS. VikBooking Hotel Booking Engine & PMS: 0 hasta 1.8.12
WordPress · LearnPress – WordPress LMS Plugin for Create and Sell Online Courses
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en LearnPress – WordPress LMS Plugin for Create and Sell Online Courses. LearnPress – WordPress LMS Plugin for Create and Sell Online Courses: 0 hasta 4.4.0
WordPress · Motors – Car Dealership & Classified Listings Plugin
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Motors – Car Dealership & Classified Listings Plugin. Motors – Car Dealership & Classified Listings Plugin: 0 hasta 1.4.111
WordPress · Slim SEO – A Fast & Automated SEO Plugin For WordPress
El registro oficial identifica la vulnerabilidad «CWE-200: Exposición de información sensible a un actor no autorizado» en Slim SEO – A Fast & Automated SEO Plugin For WordPress. Slim SEO – A Fast & Automated SEO Plugin For WordPress: 0 hasta 4.9.8
WordPress · Ninja Forms – The Contact Form Builder That Grows With You
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Ninja Forms – The Contact Form Builder That Grows With You. Ninja Forms – The Contact Form Builder That Grows With You: 0 hasta 3.14.1
WordPress · Dokan Pro
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en Dokan Pro. Dokan Pro: 0 hasta 5.0.4
WordPress · RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login
El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login. RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login: 0 hasta 6.0.9.1
WordPress · NEX-Forms – Ultimate Forms Plugin for WordPress
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en NEX-Forms – Ultimate Forms Plugin for WordPress. NEX-Forms – Ultimate Forms Plugin for WordPress: 0 hasta 9.2.2
WordPress · FV Flowplayer Video Player
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en FV Flowplayer Video Player. FV Flowplayer Video Player: 0 hasta 7.5.51.7212
WordPress · JoomSport – for Sports: Team & League, Football, Hockey & more
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en JoomSport – for Sports: Team & League, Football, Hockey & more. JoomSport – for Sports: Team & League, Football, Hockey & more: 0 hasta 5.7.8
WordPress · WPForms – AI Form Builder for WordPress – Contact Forms, Payment Forms, Survey Form, Quiz & More
El registro oficial identifica la vulnerabilidad «CWE-93: vulnerabilidad de seguridad» en WPForms – AI Form Builder for WordPress – Contact Forms, Payment Forms, Survey Form, Quiz & More. WPForms – AI Form Builder for WordPress – Contact Forms, Payment Forms, Survey Form, Quiz & More: 0 hasta 1.10.2
WordPress · Appointment Booking Calendar
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Appointment Booking Calendar. Appointment Booking Calendar: 0 hasta 1.4.02
WordPress · Taskbuilder – Project Management & Task Management Tool With Kanban Board
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Taskbuilder – Project Management & Task Management Tool With Kanban Board. Taskbuilder – Project Management & Task Management Tool With Kanban Board: 0 hasta 5.0.8
WordPress · Taskbuilder – Project Management & Task Management Tool With Kanban Board
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Taskbuilder – Project Management & Task Management Tool With Kanban Board. Taskbuilder – Project Management & Task Management Tool With Kanban Board: 0 hasta 5.0.8
WordPress · LearnPress – WordPress LMS Plugin for Create and Sell Online Courses
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en LearnPress – WordPress LMS Plugin for Create and Sell Online Courses. LearnPress – WordPress LMS Plugin for Create and Sell Online Courses: 0 hasta 4.3.9.1
WordPress · GiveWP – Donation Plugin and Fundraising Platform
El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en GiveWP – Donation Plugin and Fundraising Platform. GiveWP – Donation Plugin and Fundraising Platform: 0 hasta 4.15.3
WordPress · Salon Booking System
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Salon Booking System. Salon Booking System: 0 hasta 10.30.20
WordPress · WebAuthn Provider for Two Factor
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en WebAuthn Provider for Two Factor. WebAuthn Provider for Two Factor: 0 hasta 2.5.6
WordPress · Fluent Forms
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Fluent Forms. Fluent Forms: 0 hasta 6.2.1
WordPress · BookingPress Appointment Booking Pro
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en BookingPress Appointment Booking Pro. BookingPress Appointment Booking Pro: 0 hasta 5.7.1
WordPress · Advanced Form Integration — Connect Forms to 200+ Apps
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en Advanced Form Integration — Connect Forms to 200+ Apps. Advanced Form Integration — Connect Forms to 200+ Apps: 0 hasta 2.1.1
WordPress · User Submitted Posts
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en User Submitted Posts. User Submitted Posts: 0 hasta 20260608
WordPress · Product Configurator for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-200: vulnerabilidad de seguridad» en Product Configurator for WooCommerce. Product Configurator for WooCommerce: 0 hasta 1.7.3
WordPress · WS Form LITE
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en WS Form LITE. WS Form LITE: 0 hasta 1.11.8
WordPress · SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery. SMS Alert – SMS & OTP for WooCommerce, Order Notifications & Abandoned Cart Recovery: 0 hasta 3.9.5
WordPress · JetWidgets For Elementor
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en JetWidgets For Elementor. JetWidgets For Elementor: 0 hasta 1.0.21
WordPress · Royal MCP
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Royal MCP. Royal MCP: 0 hasta 1.4.26
WordPress · Qi Blocks
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Qi Blocks. Qi Blocks: 0 hasta 1.4.9
WordPress · WP Photo Album Plus
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en WP Photo Album Plus. WP Photo Album Plus: 0 hasta 9.1.13.005
WordPress · EventON (Pro) - WordPress Virtual Event Calendar Plugin
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en EventON (Pro) - WordPress Virtual Event Calendar Plugin. EventON (Pro) - WordPress Virtual Event Calendar Plugin: 0 hasta 5.0.11
WordPress · Fluent Booking
El registro oficial identifica la vulnerabilidad «CWE-200: vulnerabilidad de seguridad» en Fluent Booking. Fluent Booking: 0 hasta 2.1.2
WordPress · Plugin for Google Analytics by IO technologies
El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en Plugin for Google Analytics by IO technologies. Plugin for Google Analytics by IO technologies: 0 hasta 1.1
WordPress · Ajax Load More - Filters
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Ajax Load More - Filters. Ajax Load More - Filters: 0 hasta 3.4.1
WordPress · Editorial Rating – Product Review & Rating System
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Editorial Rating – Product Review & Rating System. Editorial Rating – Product Review & Rating System: 0 hasta 4.0.5
WordPress · Premium Addons for KingComposer
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Premium Addons for KingComposer. Premium Addons for KingComposer: 0 hasta 1.1.1
WordPress · Export User Data
El registro oficial identifica la vulnerabilidad «CWE-502: Deserialización de datos no confiables» en Export User Data. Export User Data: 0 hasta 2.2.6
WordPress · Team Members – Multi Language Supported Team Plugin
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Team Members – Multi Language Supported Team Plugin. Team Members – Multi Language Supported Team Plugin: 0 hasta 8.7
WordPress · ProfileGrid – User Profiles, Groups and Communities
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en ProfileGrid – User Profiles, Groups and Communities. ProfileGrid – User Profiles, Groups and Communities: 0 hasta 5.9.9.5
WordPress · WP Support Plus Responsive Ticket System
El registro oficial identifica la vulnerabilidad «CWE-89: SQL Injection» en WP Support Plus Responsive Ticket System. WP Support Plus Responsive Ticket System: 0 hasta 9.1.2
WordPress · WP Support Plus Responsive Ticket System
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en WP Support Plus Responsive Ticket System. WP Support Plus Responsive Ticket System: 0 hasta 9.1.2
WordPress · Kali Forms — Contact Form & Drag-and-Drop Builder
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Kali Forms — Contact Form & Drag-and-Drop Builder. Kali Forms — Contact Form & Drag-and-Drop Builder: 0 hasta 2.4.13
WordPress · PixMagix – WordPress Image Editor
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en PixMagix – WordPress Image Editor. PixMagix – WordPress Image Editor: 0 hasta 1.7.2
WordPress · Webmention
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Webmention. Webmention: 0 hasta 5.8.0
WordPress · F4 Post Tree
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en F4 Post Tree. F4 Post Tree: 0 hasta 2.0.5
WordPress · Simple User Avatar
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Simple User Avatar. Simple User Avatar: n/a hasta 4.9
WordPress · Embed Privacy
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Embed Privacy. Embed Privacy: n/a hasta 1.12.3
WordPress · Colissimo Officiel : Méthodes de livraison pour WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Colissimo Officiel : Méthodes de livraison pour WooCommerce. Colissimo Officiel : Méthodes de livraison pour WooCommerce: n/a hasta 2.9.0
WordPress · Japanized For WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Japanized For WooCommerce. Japanized For WooCommerce: n/a hasta 2.9.12
WordPress · Business Directory
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Business Directory. Business Directory: n/a hasta 6.4.23
WordPress · ARForms
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en ARForms. ARForms: n/a hasta 7.1.2
WordPress · Landing Page Builder
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Landing Page Builder. Landing Page Builder: n/a hasta 1.5.3.5
WordPress · Jobify
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Jobify. Jobify: n/a hasta 4.3.2
WordPress · Ads by WPQuads
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Ads by WPQuads. Ads by WPQuads: n/a hasta 3.0.3
WordPress · WP User Frontend
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en WP User Frontend. WP User Frontend: n/a hasta 4.3.7
WordPress · Link Whisper Free
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Link Whisper Free. Link Whisper Free: n/a hasta 0.9.4
WordPress · Wallet System for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Wallet System for WooCommerce. Wallet System for WooCommerce: n/a hasta 2.7.6
WordPress · Paid Videochat Turnkey Site
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Paid Videochat Turnkey Site. Paid Videochat Turnkey Site: n/a hasta 7.4.8
WordPress · MasterStudy LMS
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en MasterStudy LMS. MasterStudy LMS: n/a hasta 3.7.27
WordPress · WooCommerce Designer Pro
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en WooCommerce Designer Pro. WooCommerce Designer Pro: n/a hasta 1.9.34
WordPress · Business Directory
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Business Directory. Business Directory: n/a hasta 6.4.22
WordPress · MainWP
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en MainWP. MainWP: n/a hasta 6.1.1
WordPress · Business Directory
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Business Directory. Business Directory: n/a hasta 6.4.22
WordPress · BEAR
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en BEAR. BEAR: n/a hasta 1.1.8
WordPress · APCu Manager
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en APCu Manager. APCu Manager: 0 hasta 4.5.0
WordPress · Shariff for WordPress
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Shariff for WordPress. Shariff for WordPress: 0 hasta 1.0.11
WordPress · RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login
El registro oficial identifica la vulnerabilidad «CWE-345: vulnerabilidad de seguridad» en RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login. RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login: 0 hasta 6.0.8.6
WordPress · Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker. Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker: 0 hasta 11.1.4
WordPress · Frontend File Manager Plugin
El registro oficial identifica la vulnerabilidad «CWE-73: vulnerabilidad de seguridad» en Frontend File Manager Plugin. Frontend File Manager Plugin: 0 hasta 23.6
WordPress · Frisbii Pay
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Frisbii Pay. Frisbii Pay: 0 hasta 1.8.9