WordPress · ProfileGrid
CVE-2026-16289: CWE-862: Falta de autorización en ProfileGrid
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en ProfileGrid. ProfileGrid: 0 hasta 6.0.0.0
DIRECTORIO CVE · 2026
7.986 registros, ordenados por fecha oficial de publicación descendente.
Mostrando 100 registros · Página 32 de 80
WordPress · ProfileGrid
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en ProfileGrid. ProfileGrid: 0 hasta 6.0.0.0
WordPress · Classified Listing
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Classified Listing. Classified Listing: 0 hasta 5.4.4
WordPress · Classified Listing
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Classified Listing. Classified Listing: 0 hasta 5.4.4
WordPress · Personal QR Message
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Personal QR Message. Personal QR Message: 0 hasta 1.0
WordPress · Insert or Embed Articulate Content into WordPress
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Insert or Embed Articulate Content into WordPress. Insert or Embed Articulate Content into WordPress: 0 hasta 4.3000000027
WordPress · Contest Gallery
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Contest Gallery. Contest Gallery: 0 hasta 30.0.7
WordPress · Simple Membership
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Simple Membership. Simple Membership: 0 hasta 4.7.8
WordPress · Simple Membership
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Simple Membership. Simple Membership: 0 hasta 4.7.8
WordPress · Blog Floating Button
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Blog Floating Button. Blog Floating Button: 0 hasta 1.4.20
WordPress · GEO my WP
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en GEO my WP. GEO my WP: 0 hasta 4.5.5.3
WordPress · Simply Schedule Appointments
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en Simply Schedule Appointments. Simply Schedule Appointments: 0 hasta 1.6.12.11
WordPress · Tag, Category, and Taxonomy Manager
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Tag, Category, and Taxonomy Manager. Tag, Category, and Taxonomy Manager: 0 hasta 3.51.0
WordPress · SoftMarket — Digital Marketplace
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en SoftMarket — Digital Marketplace. SoftMarket — Digital Marketplace: 0 hasta 1.0.0
WordPress · SVG Support
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en SVG Support. SVG Support: 0 hasta 2.5.17
WordPress · Super Store Finder WordPress
El registro oficial identifica la vulnerabilidad «CWE-89: SQL Injection» en Super Store Finder WordPress. Super Store Finder WordPress: 0 hasta 7.11
WordPress · Webinfos
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Webinfos. Webinfos: 0 hasta 1.2
WordPress · Simply Schedule Appointments
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en Simply Schedule Appointments. Simply Schedule Appointments: 0 hasta 1.6.12.6
WordPress · Frontend File Manager Plugin
El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en Frontend File Manager Plugin. Frontend File Manager Plugin: 0 hasta 23.6
WordPress · ProfileGrid
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en ProfileGrid. ProfileGrid: 0 hasta 5.9.9.8
WordPress · Product Attachment for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Product Attachment for WooCommerce. Product Attachment for WooCommerce: 0 hasta 2.3.3
WordPress · Narrative Publisher
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Narrative Publisher. Narrative Publisher: 0 hasta 1.0.7
WordPress · login-social
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en login-social. login-social: 0 hasta 1.0.4
WordPress · POUCO Import Users
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en POUCO Import Users. POUCO Import Users: 0 hasta 1.0.0
WordPress · Event Booking Manager for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en Event Booking Manager for WooCommerce. Event Booking Manager for WooCommerce: 0 hasta 5.3.7
WordPress · Event Booking Manager for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Event Booking Manager for WooCommerce. Event Booking Manager for WooCommerce: 0 hasta 5.3.7
WordPress · Event Booking Manager for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-502: Deserialización de datos no confiables» en Event Booking Manager for WooCommerce. Event Booking Manager for WooCommerce: 0 hasta 5.3.7
WordPress · LWS Optimize
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en LWS Optimize. LWS Optimize: 0 hasta 3.4
WordPress · Simple Restrict
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en Simple Restrict. Simple Restrict: 0 hasta 1.2.9
WordPress · RT Mega Menu
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en RT Mega Menu. RT Mega Menu: 0 hasta 1.5.2
WordPress · Meta Box
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Meta Box. Meta Box: 0 hasta 5.13.1
WordPress · AI ChatBot for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en AI ChatBot for WooCommerce. AI ChatBot for WooCommerce: 0 hasta 4.8.4
WordPress · Gallery for Google Photos
El registro oficial identifica la vulnerabilidad «CWE-200: vulnerabilidad de seguridad» en Gallery for Google Photos. Gallery for Google Photos: 0 hasta 1.2.1
WordPress · SMS Alert
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en SMS Alert. SMS Alert: 0 hasta 3.9.8
WordPress · Five Star Restaurant Reservations
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en Five Star Restaurant Reservations. Five Star Restaurant Reservations: 0 hasta 2.7.23
WordPress · FluentBoards
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en FluentBoards. FluentBoards: 0 hasta 1.95.3
WordPress · JetEngine
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en JetEngine. JetEngine: 0 hasta 3.8.12
WordPress · King Addons for Elementor
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en King Addons for Elementor. King Addons for Elementor: 0 hasta 51.1.76
WordPress · Element Pack Addons for Elementor
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Element Pack Addons for Elementor. Element Pack Addons for Elementor: 0 hasta 8.7.13
WordPress · webtoffee-cookie-consent
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en webtoffee-cookie-consent. webtoffee-cookie-consent: 0 hasta 3.5.3
WordPress · Lenxel WP
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en Lenxel WP. Lenxel WP: 0 hasta 1.0.31
WordPress · Exclusive Addons for Elementor
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Exclusive Addons for Elementor. Exclusive Addons for Elementor: 0 hasta 2.7.9.8
WordPress · Clever Mega Menu for Visual Composer
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en Clever Mega Menu for Visual Composer. Clever Mega Menu for Visual Composer: 0 hasta 1.0.1
WordPress · WooCommerce - Social Login
El registro oficial identifica la vulnerabilidad «CWE-289: vulnerabilidad de seguridad» en WooCommerce - Social Login. WooCommerce - Social Login: 0 hasta 2.8.7
WordPress · SureForms – Contact Form Builder, AI Forms, Payment Form, Survey & Quiz
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en SureForms – Contact Form Builder, AI Forms, Payment Form, Survey & Quiz. SureForms – Contact Form Builder, AI Forms, Payment Form, Survey & Quiz: 0 hasta 2.8.1
WordPress · CubeWP Framework
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en CubeWP Framework. CubeWP Framework: 0 hasta 1.1.30
WordPress · FormGent – Next-Gen AI Form Builder for WordPress with Multi-Step, Quizzes, Payments & More
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en FormGent – Next-Gen AI Form Builder for WordPress with Multi-Step, Quizzes, Payments & More. FormGent – Next-Gen AI Form Builder for WordPress with Multi-Step, Quizzes, Payments & More: 0 hasta 1.9.2
WordPress · Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress
El registro oficial identifica la vulnerabilidad «CWE-200: Exposición de información sensible a un actor no autorizado» en Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress. Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress: 0 hasta 3.1.1
WordPress · Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Kadence Blocks — Page Builder Toolkit for Gutenberg Editor. Kadence Blocks — Page Builder Toolkit for Gutenberg Editor: 0 hasta 3.7.8
WordPress · User Access Manager
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en User Access Manager. User Access Manager: 0 hasta 2.3.15
WordPress · Responsive Thumbnail Slider
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Responsive Thumbnail Slider. Responsive Thumbnail Slider: 0 hasta 1.1.53
WordPress · Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Kadence Blocks — Page Builder Toolkit for Gutenberg Editor. Kadence Blocks — Page Builder Toolkit for Gutenberg Editor: 0 hasta 3.7.8.1
WordPress · PixelYourSite – Your smart PIXEL (TAG) & API Manager / PixelYourSite Pro – Your smart PIXEL (TAG) Manager
El registro oficial identifica la vulnerabilidad «CWE-200: Exposición de información sensible a un actor no autorizado» en PixelYourSite – Your smart PIXEL (TAG) & API Manager / PixelYourSite Pro – Your smart PIXEL (TAG) Manager. PixelYourSite – Your smart PIXEL (TAG) & API Manager: 0 hasta 11.2.1; PixelYourSite Pro – Your smart PIXEL (TAG) Manager: 0 hasta 12.6.1
WordPress · Payment forms, Buy now buttons, and Invoicing System | GetPaid
El registro oficial identifica la vulnerabilidad «CWE-98: vulnerabilidad de seguridad» en Payment forms, Buy now buttons, and Invoicing System | GetPaid. Payment forms, Buy now buttons, and Invoicing System | GetPaid: 0 hasta 2.8.56
WordPress · Advanced Views – Display Custom Fields (ACF, Pods, MetaBox), Posts, CPT and Woo Products anywhere in Gutenberg, Elementor, Divi, Beaver…
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Advanced Views – Display Custom Fields (ACF, Pods, MetaBox), Posts, CPT and Woo Products anywhere in Gutenberg, Elementor, Divi, Beaver…. Advanced Views – Display Custom Fields (ACF, Pods, MetaBox), Posts, CPT and Woo Products anywhere in Gutenberg, Elementor, Divi, Beaver…: 0 hasta 3.9.1
WordPress · Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder. Fluent Forms – Customizable Contact Forms, Survey, Quiz, & Conversational Form Builder: 0 hasta 6.2.8
WordPress · WPvivid — Backup, Migration & Staging
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en WPvivid — Backup, Migration & Staging. WPvivid — Backup, Migration & Staging: 0 hasta 0.9.131
WordPress · Download Manager
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Download Manager. Download Manager: 0 hasta 3.3.66
WordPress · Easy Property Listings
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Easy Property Listings. Easy Property Listings: 0 hasta 3.5.24
WordPress · Pronamic Pay
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en Pronamic Pay. Pronamic Pay: 0 hasta 10.1.0
WordPress · GSheetConnector – CF7 Google Sheets Connector
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en GSheetConnector – CF7 Google Sheets Connector. GSheetConnector – CF7 Google Sheets Connector: 0 hasta 5.2.1
WordPress · Kali Forms — Contact Form & Drag-and-Drop Builder
El registro oficial identifica la vulnerabilidad «CWE-94: Control incorrecto de la generación de código (Code Injection)» en Kali Forms — Contact Form & Drag-and-Drop Builder. Kali Forms — Contact Form & Drag-and-Drop Builder: 0 hasta 2.4.20
WordPress · GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress. GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress: 0 hasta 7.9.9.1
WordPress · GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress. GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress: 0 hasta 7.9.9.1
WordPress · Icegram Engage – Popups, Optins, CTAs & Lead Generation
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Icegram Engage – Popups, Optins, CTAs & Lead Generation. Icegram Engage – Popups, Optins, CTAs & Lead Generation: 0 hasta 3.1.42
WordPress · AI Engine – The Chatbot, AI Framework & MCP for WordPress
El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en AI Engine – The Chatbot, AI Framework & MCP for WordPress. AI Engine – The Chatbot, AI Framework & MCP for WordPress: 0 hasta 3.6.5
WordPress · Single Sign On For TNG
El registro oficial identifica la vulnerabilidad «CWE-620: vulnerabilidad de seguridad» en Single Sign On For TNG. Single Sign On For TNG: 0 hasta 2.0.0
WordPress · Icegram Mailer – Reliable Email Deliverability, No-code SMTP Replacement & Email logs
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Icegram Mailer – Reliable Email Deliverability, No-code SMTP Replacement & Email logs. Icegram Mailer – Reliable Email Deliverability, No-code SMTP Replacement & Email logs: 0 hasta 1.0.12
WordPress · Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 700+ Patterns, 58 Blocks & Templates
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 700+ Patterns, 58 Blocks & Templates. Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 700+ Patterns, 58 Blocks & Templates: 0 hasta 2.2.11
WordPress · Support Genix
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Support Genix. Support Genix: 0 hasta 1.4.48
WordPress · Advanced Woo Labels – Product Labels & Badges for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Advanced Woo Labels – Product Labels & Badges for WooCommerce. Advanced Woo Labels – Product Labels & Badges for WooCommerce: 0 hasta 2.48
WordPress · Powerkit – Supercharge your WordPress Site
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Powerkit – Supercharge your WordPress Site. Powerkit – Supercharge your WordPress Site: 0 hasta 3.1.0
WordPress · Powerkit – Supercharge your WordPress Site
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Powerkit – Supercharge your WordPress Site. Powerkit – Supercharge your WordPress Site: 0 hasta 3.1.0
WordPress · Powerkit – Supercharge your WordPress Site
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Powerkit – Supercharge your WordPress Site. Powerkit – Supercharge your WordPress Site: 0 hasta 3.1.0
WordPress · Kirki – Freeform Page Builder, Website Builder & Customizer
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Kirki – Freeform Page Builder, Website Builder & Customizer. Kirki – Freeform Page Builder, Website Builder & Customizer: 0 hasta 6.0.13
WordPress · NEX-Forms – Ultimate Forms Plugin for WordPress
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en NEX-Forms – Ultimate Forms Plugin for WordPress. NEX-Forms – Ultimate Forms Plugin for WordPress: 0 hasta 9.2.3
WordPress · Subscriptions for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en Subscriptions for WooCommerce. Subscriptions for WooCommerce: 0 hasta 2.0.0
WordPress · Pinpoint Booking System – Version 2
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Pinpoint Booking System – Version 2. Pinpoint Booking System – Version 2: 0 hasta 2.9.9.6.9
WordPress · User Profile Builder
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en User Profile Builder. User Profile Builder: 0 hasta 3.16.4
WordPress · Admin Columns for ACF Fields
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Admin Columns for ACF Fields. Admin Columns for ACF Fields: 0 hasta 0.3.2
WordPress · HUSKY
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en HUSKY. HUSKY: 0 hasta 1.4.1
WordPress · Codeless Page Builder
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Codeless Page Builder. Codeless Page Builder: 0 hasta 1.1.4
WordPress · MailChimp Subscribe Form, Optin Builder, PopUp Builder, Form Builder
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en MailChimp Subscribe Form, Optin Builder, PopUp Builder, Form Builder. MailChimp Subscribe Form, Optin Builder, PopUp Builder, Form Builder: 0 hasta 4.3.3
WordPress · Database Collation Fix
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Database Collation Fix. Database Collation Fix: 0 hasta 1.2.10
WordPress · Bit integrations – Form Integration, Webhook, Spreadsheets, CRM, LMS & Email Automation
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Bit integrations – Form Integration, Webhook, Spreadsheets, CRM, LMS & Email Automation. Bit integrations – Form Integration, Webhook, Spreadsheets, CRM, LMS & Email Automation: 0 hasta 2.9.0
WordPress · YOP Poll
El registro oficial identifica la vulnerabilidad «CWE-290: vulnerabilidad de seguridad» en YOP Poll. YOP Poll: 7.0.0 hasta 7.0.6
WordPress · Mapster WP Maps
El registro oficial identifica la vulnerabilidad «CWE-200: vulnerabilidad de seguridad» en Mapster WP Maps. Mapster WP Maps: 0 hasta 1.24.0
WordPress · Login & Register Forms
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en Login & Register Forms. Login & Register Forms: 0 hasta 3.2.5
WordPress · Event Tickets and Registration
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Event Tickets and Registration. Event Tickets and Registration: 0 hasta 5.29.0.1
WordPress · Event Tickets and Registration
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en Event Tickets and Registration. Event Tickets and Registration: 0 hasta 5.29.0.1
WordPress · DynamicKit for Elementor
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en DynamicKit for Elementor. DynamicKit for Elementor: 0 hasta 1.0.3
WordPress · Authora : Easy login with mobile number
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en Authora : Easy login with mobile number. Authora : Easy login with mobile number: 0 hasta 1.7.7
WordPress · Pixel Tag Manager for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en Pixel Tag Manager for WooCommerce. Pixel Tag Manager for WooCommerce: 0 hasta 2.2.1
WordPress · Chat On Desk Order Notifications
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en Chat On Desk Order Notifications. Chat On Desk Order Notifications: 0 hasta 1.0.9
WordPress · Download Manager
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Download Manager. Download Manager: 0 hasta 3.3.66
WordPress · Booking for Appointments and Events Calendar
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en Booking for Appointments and Events Calendar. Booking for Appointments and Events Calendar: 0 hasta 2.4.4
WordPress · Fluent Support
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Fluent Support. Fluent Support: 0 hasta 2.3.1
WordPress · Brizy
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Brizy. Brizy: 0 hasta 2.8.18
WordPress · Podlove Podcast Publisher
El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en Podlove Podcast Publisher. Podlove Podcast Publisher: 0 hasta 4.5.3
WordPress · Dynamic Pricing With Discount Rules for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Dynamic Pricing With Discount Rules for WooCommerce. Dynamic Pricing With Discount Rules for WooCommerce: 0 hasta 5.0.0
WordPress · Pixelavo
El registro oficial identifica la vulnerabilidad «CWE-918: vulnerabilidad de seguridad» en Pixelavo. Pixelavo: 0 hasta 1.5.4