Total
6243 CVE
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2023-47694 | 2024-12-09 | 5.4 Medium | ||
| Missing Authorization vulnerability in appsbd Mini Cart Drawer For WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Mini Cart Drawer For WooCommerce: from n/a through 4.0.0. | ||||
| CVE-2023-32299 | 2024-12-09 | 6.5 Medium | ||
| Missing Authorization vulnerability in anzia Ni WooCommerce Sales Report allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ni WooCommerce Sales Report: from n/a through 3.7.3. | ||||
| CVE-2023-49851 | 1 Ilmdesigns | 1 Square Thumbnails | 2024-12-09 | 5.3 Medium |
| Missing Authorization vulnerability in ILMDESIGNS Square Thumbnails allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Square Thumbnails: from n/a through 1.1.1. | ||||
| CVE-2023-32293 | 1 Realwebcare | 1 Wrc Pricing Tables | 2024-12-09 | 5.3 Medium |
| Missing Authorization vulnerability in Realwebcare WRC Pricing Tables allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WRC Pricing Tables: from n/a through 2.3.7. | ||||
| CVE-2023-32117 | 1 Softlab | 1 Integrate Google Drive | 2024-12-09 | 9.8 Critical |
| Missing Authorization vulnerability in SoftLab Integrate Google Drive allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Integrate Google Drive: from n/a through 1.1.99. | ||||
| CVE-2023-30870 | 1 Wooproductimporter | 1 Sharkdropship Dropshipping And Affiliate | 2024-12-09 | 6.5 Medium |
| Missing Authorization vulnerability in wooproductimporter Sharkdropship for AliExpress Dropship and Affiliate allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sharkdropship for AliExpress Dropship and Affiliate: from n/a through 2.2.3. | ||||
| CVE-2023-49850 | 1 Ashish Ajani | 1 Wp Simple Html Sitemap | 2024-12-09 | 5.3 Medium |
| Missing Authorization vulnerability in Ashish Ajani WP Simple HTML Sitemap allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Simple HTML Sitemap: from n/a through 2.7. | ||||
| CVE-2023-49817 | 1 Woocommerce | 1 Checkout Field Editor | 2024-12-09 | 8.2 High |
| Missing Authorization vulnerability in heoLixfy Flexible Woocommerce Checkout Field Editor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Flexible Woocommerce Checkout Field Editor: from n/a through 2.0.1. | ||||
| CVE-2023-25060 | 1 Wp Onlinesupport Essential Plugin | 1 Album And Image Gallery Plus Lightbox | 2024-12-09 | 5.3 Medium |
| Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Album and Image Gallery plus Lightbox allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Album and Image Gallery plus Lightbox: from n/a through 1.6.2. | ||||
| CVE-2023-49193 | 1 Nerdpress | 1 Social Pug Wordpress | 2024-12-09 | 5.3 Medium |
| Missing Authorization vulnerability in NerdPress Social Pug allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Social Pug: from n/a through 1.30.0. | ||||
| CVE-2023-49192 | 2024-12-09 | 5.3 Medium | ||
| Missing Authorization vulnerability in Clever Widgets Enhanced Text Widget allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Enhanced Text Widget: from n/a through 1.6.3. | ||||
| CVE-2023-49154 | 1 Wow-company | 1 Button Generator | 2024-12-09 | 5.3 Medium |
| Missing Authorization vulnerability in Wow-Company Button Generator – easily Button Builder allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Button Generator – easily Button Builder: from n/a through 2.3.8. | ||||
| CVE-2023-48779 | 1 Javascript | 1 360 Javascript Viewer | 2024-12-09 | 6.5 Medium |
| Missing Authorization vulnerability in 360 Javascript Viewer 360 Javascript Viewer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects 360 Javascript Viewer: from n/a through 1.7.11. | ||||
| CVE-2024-12253 | 2024-12-09 | 5.4 Medium | ||
| The Simple Ecommerce Shopping Cart Plugin- Sell products through Paypal plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'save_settings', 'export_csv', and 'simpleecommcart-action' actions in all versions up to, and including, 3.1.2. This makes it possible for authenticated attackers, with subscriber-level access and above, to update the plugins settings and retrieve order and log data (which is also accessible to unauthenticated users). | ||||
| CVE-2023-48776 | 2024-12-09 | 5.4 Medium | ||
| Missing Authorization vulnerability in Thomas Scholl canvasio3D Light allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects canvasio3D Light: from n/a through 2.5.0. | ||||
| CVE-2023-25048 | 1 Fantastic Plugins | 1 Fantastic Content Protector Free | 2024-12-09 | 5.3 Medium |
| Missing Authorization vulnerability in Fantastic Plugins Fantastic Content Protector Free allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Fantastic Content Protector Free: from n/a through 2.6. | ||||
| CVE-2024-52391 | 1 Genetechsolutions | 1 Pie Register | 2024-12-09 | 5.3 Medium |
| Missing Authorization vulnerability in Genetech Pie Register Premium.This issue affects Pie Register Premium: from n/a before 3.8.3.3. | ||||
| CVE-2023-25454 | 1 Wordpress | 1 Nate Reist Protected Posts Logout Button | 2024-12-09 | 6.5 Medium |
| Missing Authorization vulnerability in Nate Reist Protected Posts Logout Button allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Protected Posts Logout Button: from n/a through 1.4.5. | ||||
| CVE-2023-49845 | 1 Loud Dog | 1 Redirects | 2024-12-09 | 5.3 Medium |
| Missing Authorization vulnerability in Loud Dog Redirects allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Redirects: from n/a through 1.2.1. | ||||
| CVE-2023-51362 | 1 Premio | 1 All In One Floating Contact Form My Sticky Elements | 2024-12-09 | 5.3 Medium |
| Missing Authorization vulnerability in Premio All-in-one Floating Contact Form – My Sticky Elements allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects All-in-one Floating Contact Form – My Sticky Elements: from n/a through 2.1.3. | ||||