WordPress · Bit Form
CVE-2026-16573: CWE-79: Cross-Site Scripting (XSS) en Bit Form
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Bit Form. Bit Form: 0 hasta 3.2.0
DIRECTORIO CVE · 2026
Página 67 de 163. Los registros están ordenados por fecha oficial de publicación, del más reciente al más antiguo.
Registros 6601–6700 de 16.277
WordPress · Bit Form
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Bit Form. Bit Form: 0 hasta 3.2.0
WordPress · Sunshine Photo Cart
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Sunshine Photo Cart. Sunshine Photo Cart: 0 hasta 3.6.12
WordPress · VikRentItems Flexible Rental Management System
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en VikRentItems Flexible Rental Management System. VikRentItems Flexible Rental Management System: 0 hasta 1.2.1
WordPress · Contest Gallery
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en Contest Gallery. Contest Gallery: 0 hasta 30.0.7
WordPress · miniOrange 2FA
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en miniOrange 2FA. miniOrange 2FA: 0 hasta 6.2.7
WordPress · Content Egg – Affiliate Product Importer & Price Comparison
El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Content Egg – Affiliate Product Importer & Price Comparison. Content Egg – Affiliate Product Importer & Price Comparison: 0 hasta 11.3.0
WordPress · Relevanssi Premium – A Better Search / Relevanssi – A Better Search
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Relevanssi Premium – A Better Search / Relevanssi – A Better Search. Relevanssi Premium – A Better Search: 0 hasta 2.30.2; Relevanssi – A Better Search: 0 hasta 4.27.1
WordPress · VikAppointments Services Booking Calendar
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en VikAppointments Services Booking Calendar. VikAppointments Services Booking Calendar: 0 hasta 1.2.19
WordPress · Smash Balloon Social Photo Feed – Easy Social Feeds Plugin
El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Smash Balloon Social Photo Feed – Easy Social Feeds Plugin. Smash Balloon Social Photo Feed – Easy Social Feeds Plugin: 0 hasta 6.11.3
WordPress · WP 2FA
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en WP 2FA. WP 2FA: 0 hasta 4.1.0
WordPress · Ajax Load More
El registro oficial identifica la vulnerabilidad «CWE-89: SQL Injection» en Ajax Load More. Ajax Load More: 0 hasta 8.0.1
WordPress · User Access Manager
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en User Access Manager. User Access Manager: 0 hasta 2.3.12
WordPress · YayPricing
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en YayPricing. YayPricing: 0 hasta 3.5.7
WordPress · OTP Login With Phone Number, OTP Verification
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en OTP Login With Phone Number, OTP Verification. OTP Login With Phone Number, OTP Verification: 0 hasta 1.8.71
WordPress · zportals
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en zportals. zportals: 0 hasta 6.3.4
WordPress · Page and Post Restriction
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Page and Post Restriction. Page and Post Restriction: 0 hasta 1.4.1
WordPress · WP Post Author – Author Box, Multiple Authors, Guest Authors & Custom Avatars
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en WP Post Author – Author Box, Multiple Authors, Guest Authors & Custom Avatars. WP Post Author – Author Box, Multiple Authors, Guest Authors & Custom Avatars: 0 hasta 3.9.1
WordPress · WP TripAdvisor Review Slider
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en WP TripAdvisor Review Slider. WP TripAdvisor Review Slider: 0 hasta 14.3
WordPress · JoomSport – for Sports: Team & League, Football, Hockey & more
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en JoomSport – for Sports: Team & League, Football, Hockey & more. JoomSport – for Sports: Team & League, Football, Hockey & more: 0 hasta 5.7.9
WordPress · Groundhogg — CRM, Newsletters, and Marketing Automation
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Groundhogg — CRM, Newsletters, and Marketing Automation. Groundhogg — CRM, Newsletters, and Marketing Automation: 0 hasta 4.5.2
WordPress · ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce. ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce: 0 hasta 1.17.4
Microsoft Office · Flowise
El registro oficial identifica la vulnerabilidad «CWE-184: vulnerabilidad de seguridad» en Flowise. Flowise: < 3.1.3
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 628329d52474323938a03826941e166bc7c8eff4 hasta 06cfff93fd40441292567b999091beab11c74504, 628329d52474323938a03826941e166bc7c8eff4 hasta 992a7173364dcf63e30012af43da3c2f279839f9, 628329d52474323938a03826941e166bc7c8eff4 hasta 3a801bc75ba1d121d0ed60e7234f93ba5651d87d, 628329d52474323938a03826941e166bc7c8eff4 hasta 40bbbf2e91fd60715525bf0405c67876af817edf, 628329d52474323938a03826941e166bc7c8eff4 hasta ca9f8c09845fb8c51b6d447f6428eecd1b8b0a49, 628329d52474323938a03826941e166bc7c8eff4 hasta d03a740e087de7dcb2a26dc1123377bd3d1d84ca; Linux: 3.10, 0 hasta 3.10, 5.10.265 hasta 5.10.*, 5.15.216 hasta 5.15.*, 6.1.183 hasta 6.1.*, 6.6.148 hasta 6.6.*
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 42e30bf3463cd37d73839376662cb79b4d5c416c hasta a9ce31be4cb1a5dd82b3e0a1d0c3e7cbdcd31293, 42e30bf3463cd37d73839376662cb79b4d5c416c hasta a63afa1f9b12d5293cbe0b77fd45dc0632533a13, 42e30bf3463cd37d73839376662cb79b4d5c416c hasta 2b324ba3494ae958cba16a453e3e71489b4de7fc, 42e30bf3463cd37d73839376662cb79b4d5c416c hasta fedeb4468987bcaff85fe3061de5ae052d414740, 42e30bf3463cd37d73839376662cb79b4d5c416c hasta 74e8f3e7114f0e26d1b2c4c048044db9fcc27603, 42e30bf3463cd37d73839376662cb79b4d5c416c hasta 85aca407c560aba81b5ce9d3d6cf94c74077d19b; Linux: 2.6.25, 0 hasta 2.6.25, 5.10.265 hasta 5.10.*, 5.15.216 hasta 5.15.*, 6.1.183 hasta 6.1.*, 6.6.148 hasta 6.6.*
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 5d240a8936f6a1d3ece06701e8c4d830a2eca8a8 hasta ba510b5e9fe396497d31162acb579f210adfe6c8, 5d240a8936f6a1d3ece06701e8c4d830a2eca8a8 hasta a0406c40c6638c5ae50257db6297b2fba6c9ba16, 5d240a8936f6a1d3ece06701e8c4d830a2eca8a8 hasta 0955b65c2b47c30b439e2cf1b1e375073aa0413a, 5d240a8936f6a1d3ece06701e8c4d830a2eca8a8 hasta c39643ad99fea749be50615550e8f0e6d6e60694, 5d240a8936f6a1d3ece06701e8c4d830a2eca8a8 hasta 042fda5c088015f18838e5c692659a7be60aeb26, 5d240a8936f6a1d3ece06701e8c4d830a2eca8a8 hasta 3ff7c1dbf722cf3fa538672452ba182318e0fcc3; Linux: 4.18, 0 hasta 4.18, 5.10.265 hasta 5.10.*, 5.15.216 hasta 5.15.*, 6.1.183 hasta 6.1.*, 6.6.151 hasta 6.6.*
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: 355f4fb1405ec29d0fac49b4d41fcd78cbd455d5 hasta b82c3144d8264265448292ca406f60bafeba3b6f, 355f4fb1405ec29d0fac49b4d41fcd78cbd455d5 hasta 4f50e6aec16f69627dbad5704d1e90a255d766a7, 355f4fb1405ec29d0fac49b4d41fcd78cbd455d5 hasta dc3eecfa219ebc9d01eaf7d1abd1441efe884dab, 355f4fb1405ec29d0fac49b4d41fcd78cbd455d5 hasta af56298e9d86e6098cd1d2e155cb2949b7c45412, 355f4fb1405ec29d0fac49b4d41fcd78cbd455d5 hasta 589419470030a89f16cf19300658b6dc644ca946, 355f4fb1405ec29d0fac49b4d41fcd78cbd455d5 hasta 8001d2ce9d9bd09118ce523aef595aa094573ae3; Linux: 4.9, 0 hasta 4.9, 5.10.265 hasta 5.10.*, 5.15.216 hasta 5.15.*, 6.1.183 hasta 6.1.*, 6.6.148 hasta 6.6.*
Linux · Linux
El registro oficial identifica la vulnerabilidad «vulnerabilidad de seguridad» en Linux. Linux: f95eec9bed76d42194c23153cb1cc8f186bf91cb hasta 62ef67af1878fa2cd066642f2f59e33ade95f637, f95eec9bed76d42194c23153cb1cc8f186bf91cb hasta 65c4f7a1028cf01a93a2762d679c289810ede990, f95eec9bed76d42194c23153cb1cc8f186bf91cb hasta 35e77467610c4a37cb0ff54ee56b85f73b1f5700, f95eec9bed76d42194c23153cb1cc8f186bf91cb hasta 0026dbb7de8ea76e97d6edf42fc3cc084564e2bf, f95eec9bed76d42194c23153cb1cc8f186bf91cb hasta f3477a6a4164f15287444eda685b5f6405dbd1e5, f95eec9bed76d42194c23153cb1cc8f186bf91cb hasta bce0d3c26e2c761a4bf43c8949f333fc7374eb2d; Linux: 5.9, 0 hasta 5.9, 5.15.218 hasta 5.15.*, 6.1.183 hasta 6.1.*, 6.6.148 hasta 6.6.*, 6.12.101 hasta 6.12.*
WordPress · Create Block Theme
El registro oficial identifica la vulnerabilidad «CWE-94: Control incorrecto de la generación de código (Code Injection)» en Create Block Theme. Create Block Theme: 0 hasta 2.10.0
WordPress · Improve SEO
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Improve SEO. Improve SEO: 0 hasta 2.0.11
WordPress · Chat Widget: Floating Customer Support Button for 30+ Channels, Supporting SMS, Calls, and Chat
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Chat Widget: Floating Customer Support Button for 30+ Channels, Supporting SMS, Calls, and Chat. Chat Widget: Floating Customer Support Button for 30+ Channels, Supporting SMS, Calls, and Chat: 0 hasta 1.8.2
WordPress · REST API Log
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en REST API Log. REST API Log: 0 hasta 1.7.1
WordPress · Wired Impact Volunteer Management
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Wired Impact Volunteer Management. Wired Impact Volunteer Management: 0 hasta 2.8.2
WordPress · Simple Google Calendar Outlook Events Widget
El registro oficial identifica la vulnerabilidad «CWE-918: vulnerabilidad de seguridad» en Simple Google Calendar Outlook Events Widget. Simple Google Calendar Outlook Events Widget: 0 hasta 3.1.0
WordPress · Clearfy Cache
El registro oficial identifica la vulnerabilidad «CWE-601: vulnerabilidad de seguridad» en Clearfy Cache. Clearfy Cache: 0 hasta 2.4.3
WordPress · Clearfy Cache
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en Clearfy Cache. Clearfy Cache: 0 hasta 2.4.3
WordPress · PowerPress Podcasting plugin by Blubrry
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en PowerPress Podcasting plugin by Blubrry. PowerPress Podcasting plugin by Blubrry: 0 hasta 11.16.11
WordPress · Brizy
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Brizy. Brizy: 0 hasta 2.8.19
WordPress · Brizy
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Brizy. Brizy: 0 hasta 2.8.19
WordPress · Brizy
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Brizy. Brizy: 0 hasta 2.8.19
WordPress · Contest Gallery
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Contest Gallery. Contest Gallery: 0 hasta 30.0.7
WordPress · miniOrange 2FA
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en miniOrange 2FA. miniOrange 2FA: 0 hasta 6.2.7
WordPress · Easy Integration for Dropbox
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Easy Integration for Dropbox. Easy Integration for Dropbox: 0 hasta 2.2.0
WordPress · Nested Pages
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Nested Pages. Nested Pages: 0 hasta 3.2.15
WordPress · Visualizer
El registro oficial identifica la vulnerabilidad «CWE-918: vulnerabilidad de seguridad» en Visualizer. Visualizer: 0 hasta 4.0.6
WordPress · Database for Contact Form 7, WPforms, Elementor forms
El registro oficial identifica la vulnerabilidad «CWE-89: SQL Injection» en Database for Contact Form 7, WPforms, Elementor forms. Database for Contact Form 7, WPforms, Elementor forms: 0 hasta 1.5.5
WordPress · Paid Membership Subscriptions
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en Paid Membership Subscriptions. Paid Membership Subscriptions: 0 hasta 3.0.8
WordPress · Quiz and Survey Master (QSM)
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Quiz and Survey Master (QSM). Quiz and Survey Master (QSM): 0 hasta 11.2.2
WordPress · The GDPR Framework By Data443
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en The GDPR Framework By Data443. The GDPR Framework By Data443: 0 hasta 2.4.0
WordPress · wpForo Forum
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en wpForo Forum. wpForo Forum: 0 hasta 3.1.3
WordPress · MonsterInsights
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en MonsterInsights. MonsterInsights: 0 hasta 11.1.0
WordPress · EmbedPress
El registro oficial identifica la vulnerabilidad «CWE-918: vulnerabilidad de seguridad» en EmbedPress. EmbedPress: 0 hasta 4.6.1
Microsoft Office · Microsoft 365 Apps for Enterprise / Microsoft Excel 2016 / Microsoft Office 2019
El registro oficial identifica la vulnerabilidad «CWE-416: Uso de memoria después de liberarla (Use After Free)» en Microsoft 365 Apps for Enterprise / Microsoft Excel 2016 / Microsoft Office 2019. Microsoft 365 Apps for Enterprise: 16.0.1 hasta https://aka.ms/OfficeSecurityReleases; Microsoft Excel 2016: 16.0.0.0 hasta 16.0.5561.1001; Microsoft Office 2019: 19.0.0 hasta https://aka.ms/OfficeSecurityReleases; Microsoft Office LTSC 2021: 16.0.1 hasta https://aka.ms/OfficeSecurityReleases; Microsoft Office LTSC 2024: 16.0.0 hasta https://aka.ms/OfficeSecurityReleases
WordPress · Unlimited Elements For Elementor (Free Widgets, Addons, Templates)
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Unlimited Elements For Elementor (Free Widgets, Addons, Templates). Unlimited Elements For Elementor (Free Widgets, Addons, Templates): n/a hasta 2.0.15
WordPress · LogMyTrip
El registro oficial identifica la vulnerabilidad «CWE-89: SQL Injection» en LogMyTrip. LogMyTrip: 0 hasta 1.9
WordPress · Dokan: AI Powered WooCommerce Multivendor Marketplace Solution
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Dokan: AI Powered WooCommerce Multivendor Marketplace Solution. Dokan: AI Powered WooCommerce Multivendor Marketplace Solution: 0 hasta 5.0.9
WordPress · Dokan: AI Powered WooCommerce Multivendor Marketplace Solution
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Dokan: AI Powered WooCommerce Multivendor Marketplace Solution. Dokan: AI Powered WooCommerce Multivendor Marketplace Solution: 0 hasta 5.0.9
WordPress · Academy LMS
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en Academy LMS. Academy LMS: 0 hasta 3.8.3
WordPress · sm page duplicator
El registro oficial identifica la vulnerabilidad «CWE-89: SQL Injection» en sm page duplicator. sm page duplicator: 0 hasta 1.0.0
WordPress · Import and export users and customers
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en Import and export users and customers. Import and export users and customers: 0 hasta 2.4.2
WordPress · Link Library
El registro oficial identifica la vulnerabilidad «CWE-89: SQL Injection» en Link Library. Link Library: 0 hasta 7.9.3
WordPress · ChamaWP
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en ChamaWP. ChamaWP: 0 hasta 1.0.13
WordPress · Clearfy Cache
El registro oficial identifica la vulnerabilidad «CWE-502: Deserialización de datos no confiables» en Clearfy Cache. Clearfy Cache: 0 hasta 2.4.3
WordPress · ProfileGrid
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en ProfileGrid. ProfileGrid: 0 hasta 6.0.0.0
WordPress · Classified Listing
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Classified Listing. Classified Listing: 0 hasta 5.4.4
WordPress · Classified Listing
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Classified Listing. Classified Listing: 0 hasta 5.4.4
WordPress · Personal QR Message
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Personal QR Message. Personal QR Message: 0 hasta 1.0
WordPress · Insert or Embed Articulate Content into WordPress
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Insert or Embed Articulate Content into WordPress. Insert or Embed Articulate Content into WordPress: 0 hasta 4.3000000027
WordPress · Contest Gallery
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Contest Gallery. Contest Gallery: 0 hasta 30.0.7
WordPress · Simple Membership
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Simple Membership. Simple Membership: 0 hasta 4.7.8
WordPress · Simple Membership
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Simple Membership. Simple Membership: 0 hasta 4.7.8
WordPress · Blog Floating Button
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Blog Floating Button. Blog Floating Button: 0 hasta 1.4.20
WordPress · GEO my WP
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en GEO my WP. GEO my WP: 0 hasta 4.5.5.3
WordPress · Simply Schedule Appointments
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en Simply Schedule Appointments. Simply Schedule Appointments: 0 hasta 1.6.12.11
WordPress · Tag, Category, and Taxonomy Manager
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en Tag, Category, and Taxonomy Manager. Tag, Category, and Taxonomy Manager: 0 hasta 3.51.0
WordPress · SoftMarket — Digital Marketplace
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en SoftMarket — Digital Marketplace. SoftMarket — Digital Marketplace: 0 hasta 1.0.0
WordPress · SVG Support
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en SVG Support. SVG Support: 0 hasta 2.5.17
WordPress · Super Store Finder WordPress
El registro oficial identifica la vulnerabilidad «CWE-89: SQL Injection» en Super Store Finder WordPress. Super Store Finder WordPress: 0 hasta 7.11
WordPress · Webinfos
El registro oficial identifica la vulnerabilidad «CWE-434: vulnerabilidad de seguridad» en Webinfos. Webinfos: 0 hasta 1.2
WordPress · Simply Schedule Appointments
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en Simply Schedule Appointments. Simply Schedule Appointments: 0 hasta 1.6.12.6
WordPress · Frontend File Manager Plugin
El registro oficial identifica la vulnerabilidad «CWE-352: vulnerabilidad de seguridad» en Frontend File Manager Plugin. Frontend File Manager Plugin: 0 hasta 23.6
WordPress · ProfileGrid
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en ProfileGrid. ProfileGrid: 0 hasta 5.9.9.8
WordPress · Product Attachment for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Product Attachment for WooCommerce. Product Attachment for WooCommerce: 0 hasta 2.3.3
WordPress · Narrative Publisher
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Narrative Publisher. Narrative Publisher: 0 hasta 1.0.7
WordPress · login-social
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en login-social. login-social: 0 hasta 1.0.4
WordPress · POUCO Import Users
El registro oficial identifica la vulnerabilidad «CWE-269: Gestión incorrecta de privilegios» en POUCO Import Users. POUCO Import Users: 0 hasta 1.0.0
WordPress · Event Booking Manager for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en Event Booking Manager for WooCommerce. Event Booking Manager for WooCommerce: 0 hasta 5.3.7
WordPress · Event Booking Manager for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Event Booking Manager for WooCommerce. Event Booking Manager for WooCommerce: 0 hasta 5.3.7
WordPress · Event Booking Manager for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-502: Deserialización de datos no confiables» en Event Booking Manager for WooCommerce. Event Booking Manager for WooCommerce: 0 hasta 5.3.7
WordPress · LWS Optimize
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en LWS Optimize. LWS Optimize: 0 hasta 3.4
WordPress · Simple Restrict
El registro oficial identifica la vulnerabilidad «CWE-863: vulnerabilidad de seguridad» en Simple Restrict. Simple Restrict: 0 hasta 1.2.9
WordPress · RT Mega Menu
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en RT Mega Menu. RT Mega Menu: 0 hasta 1.5.2
WordPress · Meta Box
El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en Meta Box. Meta Box: 0 hasta 5.13.1
WordPress · AI ChatBot for WooCommerce
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en AI ChatBot for WooCommerce. AI ChatBot for WooCommerce: 0 hasta 4.8.4
WordPress · Gallery for Google Photos
El registro oficial identifica la vulnerabilidad «CWE-200: vulnerabilidad de seguridad» en Gallery for Google Photos. Gallery for Google Photos: 0 hasta 1.2.1
WordPress · SMS Alert
El registro oficial identifica la vulnerabilidad «CWE-287: Autenticación incorrecta» en SMS Alert. SMS Alert: 0 hasta 3.9.8
WordPress · Five Star Restaurant Reservations
El registro oficial identifica la vulnerabilidad «CWE-284: vulnerabilidad de seguridad» en Five Star Restaurant Reservations. Five Star Restaurant Reservations: 0 hasta 2.7.23
WordPress · FluentBoards
El registro oficial identifica la vulnerabilidad «CWE-639: Evasión de autorización mediante una clave controlada por el usuario» en FluentBoards. FluentBoards: 0 hasta 1.95.3
WordPress · JetEngine
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en JetEngine. JetEngine: 0 hasta 3.8.12
WordPress · King Addons for Elementor
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en King Addons for Elementor. King Addons for Elementor: 0 hasta 51.1.76
WordPress · Element Pack Addons for Elementor
El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Element Pack Addons for Elementor. Element Pack Addons for Elementor: 0 hasta 8.7.13