| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-43299 | WordPress SpeedyCache plugin <= 1.1.8 - Cross Site Request Forgery (CSRF) vulnerability | Softaculous | SpeedyCache | Medium | 5.4 | 2024-08-26 20:41:26 | Deep Dive |
| CVE-2024-24622 | Softaculous Webuzo Password Reset Command Injection | Softaculous | Webuzo | High | 8.8 | 2024-07-25 21:44:54 | Deep Dive |
| CVE-2024-24623 | Softaculous Webuzo FTP Management Command Injection | Softaculous | Webuzo | High | 8.8 | 2024-07-25 21:44:52 | Deep Dive |
| CVE-2024-24621 | Softaculous Webuzo Authentication Bypass | Softaculous | Webuzo | Critical | 9.8 | 2024-07-25 21:44:48 | Deep Dive |
| CVE-2024-5599 | FileOrganizer <= 1.0.7 - Sensitive Information Exposure via Directory Listing | softaculous | FileOrganizer – WordPress File Manager | High | 7.5 | 2024-06-07 12:33:44 | Deep Dive |
| CVE-2024-2324 | FileOrganizer and FileOrganizer Pro <= 1.0.6 - Authenticated Stored Cross-Site Scripting | softaculous | FileOrganizer – WordPress File Manager | Medium | 4.4 | 2024-05-02 16:52:55 | Deep Dive |
| CVE-2024-2504 | Page Builder: Pagelayer – Drag and Drop website builder <= 1.8.4 - Authenticated(Contributor+) Stored Cross-Site Scripting via custom attributes | softaculous | Page Builder: Pagelayer – Drag and Drop website builder | Medium | 6.4 | 2024-04-09 18:59:21 | Deep Dive |
| CVE-2024-2294 | Backuply – Backup, Restore, Migrate and Clone <= 1.2.7 - Authenticated (Admin+) Directory Traversal | softaculous | Backuply – Backup, Restore, Migrate and Clone | Medium | 4.9 | 2024-03-16 01:55:44 | Deep Dive |
| CVE-2024-2127 | Page Builder: Pagelayer – Drag and Drop website builder <= 1.8.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Attributes | softaculous | Page Builder: Pagelayer – Drag and Drop website builder | Medium | 6.4 | 2024-03-07 19:33:05 | Deep Dive |
| CVE-2024-1590 | Page Builder: Pagelayer – Drag and Drop website builder <= 1.8.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button | softaculous | Page Builder: Pagelayer – Drag and Drop website builder | Medium | 4.6 | 2024-02-23 09:32:38 | Deep Dive |
| CVE-2024-0842 | Backuply - Backup, Restore, Migrate and Clone <= 1.2.6 - Denial of Service | softaculous | Backuply – Backup, Restore, Migrate and Clone | High | 7.5 | 2024-02-09 04:31:55 | Deep Dive |
| CVE-2024-0697 | Backuply – Backup, Restore, Migrate and Clone <= 1.2.3 - Authenticated (Administrator+) Directory Traversal | softaculous | Backuply – Backup, Restore, Migrate and Clone | Medium | 6.5 | 2024-01-27 04:31:30 | Deep Dive |
| CVE-2023-6598 | SpeedyCache <= 1.1.3 - Missing Authorization to Plugin Options Update | softaculous | SpeedyCache – Cache, Optimization, Performance | Medium | 4.3 | 2024-01-11 08:33:03 | Deep Dive |
| CVE-2023-6738 | PageLayer <= 1.7.8 - Authenticated(Contributor+) Stored Cross-Site Scripting via meta fields | softaculous | Page Builder: Pagelayer – Drag and Drop website builder | Medium | 5.4 | 2024-01-04 03:30:13 | Deep Dive |
| CVE-2023-49746 | WordPress SpeedyCache Plugin <= 1.1.2 is vulnerable to Server Side Request Forgery (SSRF) | Softaculous Team | SpeedyCache – Cache, Optimization, Performance | Medium | 4.9 | 2023-12-07 10:50:20 | Deep Dive |
| CVE-2023-41854 | WordPress wpCentral Plugin <= 1.5.7 is vulnerable to Cross Site Request Forgery (CSRF) | Softaculous Ltd. | wpCentral | Medium | 5.4 | 2023-10-10 08:46:39 | Deep Dive |
| CVE-2022-45079 | WordPress Loginizer Plugin <= 1.7.5 is vulnerable to Cross Site Request Forgery (CSRF) | Softaculous | Loginizer | Medium | 4.3 | 2023-05-22 09:36:05 | Deep Dive |
| CVE-2022-45084 | WordPress Loginizer Plugin <= 1.7.5 is vulnerable to Cross Site Scripting (XSS) | Softaculous | Loginizer | High | 7.1 | 2023-04-24 14:12:22 | Deep Dive |