4628 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2022-4626
PPWP Web Windows
5.4
MEDIUM
EPSS
0.3%
2022 1 PoC

The PPWP WordPress plugin before 1.8.6 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.

CVE-2022-4752
Opening Hours Web Windows
5.4
MEDIUM
EPSS
0.3%
2022 1 PoC

The Opening Hours WordPress plugin through 2.3.0 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVE-2022-4544
Social Media Share Buttons | MashShare Web Windows
5.4
MEDIUM
EPSS
0.3%
2022 1 PoC

The MashShare WordPress plugin before 3.8.7 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.

CVE-2022-4671
PixCodes Web Windows
5.4
MEDIUM
EPSS
0.2%
2022 1 PoC

The PixCodes WordPress plugin before 2.3.7 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.

CVE-2022-4699
MediaElement.js Web Windows
5.4
MEDIUM
EPSS
0.3%
2022 1 PoC

The MediaElement.js WordPress plugin through 4.2.8 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high-privilege users such as admins.

CVE-2022-4775
GeoDirectory Web Windows
5.4
MEDIUM
EPSS
0.2%
2022 1 PoC

The GeoDirectory WordPress plugin before 2.2.22 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.

CVE-2022-4753
Print-O-Matic Web Windows
5.4
MEDIUM
EPSS
0.3%
2022 1 PoC

The Print-O-Matic WordPress plugin before 2.1.8 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admins.

CVE-2026-1969
trx_addons Web Windows
5.3
MEDIUM
EPSS
0.1%
2026 1 PoC

The trx_addons WordPress plugin before 2.38.5 does not correctly validate file types in one of its AJAX action, allowing unauthenticated users to upload arbitrary file. This is due to an incorrect fix of CVE-2024-13448

CVE-2026-2343
PeproDev Ultimate Invoice Web Windows
5.3
MEDIUM
EPSS
0.0%
2026 1 PoC

The PeproDev Ultimate Invoice WordPress plugin through 2.2.5 has a bulk download invoices action that generates ZIP archives containing exported invoice PDFs. The ZIP files are named predictably making it possible to brute force and retreive PII.

CVE-2026-5335
Magic Export & Import Web Windows
5.3
MEDIUM
EPSS
0.0%
2026 1 PoC

The Magic Export & Import WordPress plugin before 1.2.0 stores exported CSV files at a publicly accessible location, making it possible for any visitors to leak sensitive user information.

CVE-2026-1890
LeadConnector Web Windows
5.3
MEDIUM
EPSS
0.1%
2026 1 PoC

The LeadConnector WordPress plugin before 3.0.22 does not have authorization in a REST route, allowing unauthenticated users to call it and overwrite existing data

CVE-2026-2696
Export All URLs Web Windows
5.3
MEDIUM
EPSS
0.0%
2026 1 PoC

The Export All URLs WordPress plugin before 5.1 generates CSV filenames containing posts URLS (including private posts) in a predictable pattern using a random 6-digit number. These files are stored in the publicly accessible wp-content/uploads/ directory. As a result, any unauthenticated user can brute-force the filenames to gain access to sensitive data contained within the exported files.

CVE-2026-4106
HT Mega Addons for Elementor Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
0.8%
2026 1 PoC

The HT Mega Addons for Elementor WordPress plugin before 3.0.7 contains an unauthenticated AJAX action returning some PII (such as full name, city, state and country) of customers who placed orders in the last 7 days

CVE-2023-4281
Activity Log Web Windows
5.3
MEDIUM
EPSS
1.5%
2023 2 PoCs

This Activity Log WordPress plugin before 2.8.8 retrieves client IP addresses from potentially untrusted headers, allowing an attacker to manipulate its value. This may be used to hide the source of malicious traffic.

CVE-2023-6592
FastDup Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
4.4%
2023 2 PoCs

The FastDup WordPress plugin before 2.2 does not prevent directory listing in sensitive directories containing export files.

CVE-2023-7199
Relevanssi Web Windows
5.3
MEDIUM
EPSS
0.4%
2023 1 PoC

The Relevanssi WordPress plugin before 4.22.0, Relevanssi Premium WordPress plugin before 2.25.0 allows any unauthenticated user to read draft and private posts via a crafted request

CVE-2023-5845
Simple Social Media Share Buttons Web Windows
5.3
MEDIUM
EPSS
0.1%
2023 1 PoC

The Simple Social Media Share Buttons WordPress plugin before 5.1.1 leaks password-protected post content to unauthenticated visitors in some meta tags

CVE-2023-5177
Vrm 360 3D Model Viewer Web Windows
5.3
MEDIUM
EPSS
0.1%
2023 1 PoC

The Vrm 360 3D Model Viewer WordPress plugin through 1.2.1 exposes the full path of a file when putting in a non-existent file in a parameter of the shortcode.

CVE-2023-1263
CMP – Coming Soon & Maintenance Plugin by NiteoThemes Web Windows ⚡ nuclei
5.3
MEDIUM
EPSS
22.9%
2023 CWE-200 0 PoCs

The CMP – Coming Soon & Maintenance plugin for WordPress is vulnerable to Information Exposure in versions up to, and including, 4.1.6 via the cmp_get_post_detail function. This can allow unauthenticated individuals to obtain the contents of any non-password-protected, published post or page even when maintenance mode is enabled.

CVE-2023-2299
Online Booking & Scheduling Calendar for WordPress by vcita Web Windows
5.3
MEDIUM
EPSS
0.2%
2023 CWE-862 1 PoC

The Online Booking & Scheduling Calendar for WordPress by vcita plugin for WordPress is vulnerable to unauthorized medication of data via the /wp-json/vcita-wordpress/v1/actions/auth REST-API endpoint in versions up to, and including, 4.4.2 due to a missing capability check on the processAction function. This makes it possible for unauthenticated attackers modify the plugin's settings.