| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-45407 | Sunshine has incorrect state management during pairing process may lead to incorrectly authorized client | LizardByte | Sunshine | Medium | 6.5 | 2024-09-10 15:13:20 | Deep Dive |
| CVE-2024-31226 | Sunshine's unquoted executable path could lead to hijacked execution flow | LizardByte | Sunshine | Medium | 4.9 | 2024-05-16 18:12:57 | Deep Dive |
| CVE-2024-31221 | Clients removed during unpairing process may regain access if Sunshine was not restarted | LizardByte | Sunshine | Medium | 5.9 | 2024-04-08 15:10:17 | Deep Dive |
| CVE-2024-31220 | Sunshine vulnerable to remote unauthenticated arbitrary file read | LizardByte | Sunshine | High | 7.3 | 2024-04-05 14:59:53 | Deep Dive |
| CVE-2024-30221 | WordPress Sunshine Photo Cart plugin <= 3.1.1 - PHP Object Injection vulnerability | sunshinephotocart | Sunshine Photo Cart | Medium | 5.4 | 2024-03-28 05:07:42 | Deep Dive |
| CVE-2024-30194 | WordPress Sunshine Photo Cart plugin <= 3.1.1 - Reflected Cross Site Scripting (XSS) vulnerability | sunshinephotocart | Sunshine Photo Cart | High | 7.1 | 2024-03-27 06:40:13 | Deep Dive |
| CVE-2024-1294 | Sunshine Photo Cart: Free Client Galleries for Photographers <= 3.0.24 - Unauthenticated Sensitive Information Exposure via Invoice | sunshinephotocart | Sunshine Photo Cart – Client Photo Gallery & Photo Proofing for Photographers | Medium | 5.3 | 2024-02-20 18:56:49 | Deep Dive |
| CVE-2023-41796 | WordPress Sunshine Photo Cart Plugin < 3.0.0 is vulnerable to Insecure Direct Object References (IDOR) | WP Sunshine | Sunshine Photo Cart: Free Client Galleries for Photographers | Medium | 5.3 | 2023-12-20 13:42:22 | Deep Dive |
| CVE-2021-4415 | Sunshine Photo Cart <= 2.8.28 - Cross-Site Request Forgery Bypass | sunshinephotocart | Sunshine Photo Cart – Client Photo Gallery & Photo Proofing for Photographers | Medium | 4.3 | 2023-07-12 03:40:45 | Deep Dive |
| CVE-2022-40692 | WordPress Sunshine Photo Cart Plugin <= 2.9.13 is vulnerable to Cross Site Request Forgery (CSRF) | WP Sunshine | Sunshine Photo Cart | Medium | 5.4 | 2023-02-02 15:58:57 | Deep Dive |
| CVE-2022-4301 | Sunshine Photo Cart < 2.9.15 - Reflected XSS | Unknown | Sunshine Photo Cart | 中危 | - | 2023-01-09 22:13:37 | Deep Dive |