Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Vulnerability List - Page 14

Found 326 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2023-26543 WordPress WP Meteor Page Speed Optimization Topping Plugin <= 3.1.4 is vulnerable to Cross Site Request Forgery (CSRF) Aleksandr GuidrevitchWP Meteor Website Speed Optimization Addon Medium 4.3 2023-11-13 00:02:42 Deep Dive
CVE-2023-5919 SourceCodester Company Website CMS Create Blog Page createblog unrestricted upload SourceCodesterCompany Website CMS Medium 4.7 2023-11-02 13:31:07 Deep Dive
CVE-2023-5049 Giveaways and Contests by RafflePress <= 1.12.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode smubGiveaways and Contests by RafflePress – Get More Website Traffic, Email Subscribers, and Social Followers Medium 6.4 2023-10-30 13:49:00 Deep Dive
CVE-2023-4975 Website Builder by SeedProd <= 6.15.13.1 - Cross-Site Request Forgery to Settings Update seedprodWebsite Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode Medium 4.3 2023-10-20 06:35:13 Deep Dive
CVE-2023-44245 WordPress Contractor Contact Form Website to Workflow Tool Plugin <= 4.0.0 is vulnerable to Cross Site Scripting (XSS) LeapContractor Contact Form Website to Workflow Tool High 7.1 2023-10-02 09:58:45 Deep Dive
CVE-2023-5014 Sakshi2610 Food Ordering Website categoryfood.php sql injection Sakshi2610Food Ordering Website Medium 6.3 2023-09-17 01:00:08 Deep Dive
CVE-2023-37393 WordPress Atarim Plugin <= 3.9.3 is vulnerable to Cross Site Scripting (XSS) AtarimVisual Website Collaboration, Feedback & Project Management – Atarim High 7.1 2023-09-04 10:21:00 Deep Dive
CVE-2022-4953 Elementor < 3.5.5 - Iframe Injection UnknownElementor Website Builder 中危 -2023-08-14 19:10:18 Deep Dive
CVE-2023-3642 GZ Scripts Vacation Rental Website HTTP POST Request cross site scripting GZ ScriptsVacation Rental Website Medium 4.3 2023-07-12 17:00:04 Deep Dive
CVE-2023-22673 WordPress Website Monetization by MageNet Plugin <= 1.0.29.1 is vulnerable to Cross Site Request Forgery (CSRF) MageNetWebsite Monetization by MageNet Medium 5.4 2023-07-10 11:40:28 Deep Dive
CVE-2023-3534 SourceCodester Shopping Website check_availability.php sql injection SourceCodesterShopping Website Medium 6.3 2023-07-07 12:00:05 Deep Dive
CVE-2023-3503 SourceCodester Shopping Website insert-product.php unrestricted upload SourceCodesterShopping Website Medium 6.3 2023-07-04 14:31:04 Deep Dive
CVE-2023-3502 SourceCodester Shopping Website search-result.php sql injection SourceCodesterShopping Website Medium 6.3 2023-07-04 14:00:05 Deep Dive
CVE-2023-36817 The King's Temple Church website Leaked Stripe API Key in Public Code Repository tktchurchwebsite High 7.5 2023-07-03 17:54:36 Deep Dive
CVE-2023-3458 SourceCodester Shopping Website forgot-password.php sql injection SourceCodesterShopping Website Medium 6.3 2023-06-29 13:31:05 Deep Dive
CVE-2023-3457 SourceCodester Shopping Website index.php sql injection SourceCodesterShopping Website Medium 6.3 2023-06-29 13:31:04 Deep Dive
CVE-2020-36722 Visual Composer <= 26.0 - Multiple Cross-Site Scripting visualcomposerVisual Composer Website Builder Medium 5.5 2023-06-07 01:51:43 Deep Dive
CVE-2020-36711 Avada <= 6.2.2 - Authenticated (Contributor+) Cross-Site Scripting ThemeFusionAvada | Website Builder For WordPress & WooCommerce Medium 6.4 2023-06-07 01:51:25 Deep Dive
CVE-2023-3124 Elementor Pro <= 3.11.6 - Authenticated(Subscriber+) Privilege Escalation via update_page_option https://elementor.com/Elementor Website Builder Pro High 8.8 2023-06-07 01:51:21 Deep Dive
CVE-2020-36703 Elementor Website Builder <= 2.9.7 - Authenticated Stored Cross-Site Scripting elemntorElementor Website Builder – more than just a page builder Medium 6.4 2023-06-07 01:51:17 Deep Dive