Boshe99
121 exploits
Active since Nov 2023
Hunk Companion <= 1.8.4 - Unauthenticated Arbitrary Plugin Installation and Activation via REST API
CVSS 9.8
Order Attachments for WooCommerce 2.0-2.4.1 - Authenticated Arbitrary File Upload via wcoa_add_attachment AJAX Action
CVSS 4.3
Wux Blog Editor <3.0.0 - File Upload
CVSS 9.8
WatchTowerHQ <= 3.10.1 - Unauthenticated Authentication Bypass via Empty OTA Token
CVSS 9.8
PDF Generator Addon - Path Traversal
CVSS 7.5
Flex QR Code Generator <1.2.5 - File Upload
CVSS 9.8
WordPress WP移行専用プラグイン for CPI <= 1.0.2 - Unauthenticated File Upload Code Execution
CVSS 9.8
WordPress AI Engine Plugin MCP Unauthenticated Admin Creation to RCE
CVSS 9.8
WordPress TNC Toolbox: Web Performance <1.4.2 - Info Disclosure
CVSS 10.0
NewsBlogger < 0.2.5.1 - Authenticated Arbitrary File Upload via newsblogger_install_and_activate_plugin()
CVSS 8.8
Newscrunch <= 1.8.4 - Cross-Site Request Forgery via newscrunch_install_and_activate_plugin()
CVSS 8.8
Newscrunch <= 1.8.4.1 - Authenticated Arbitrary File Upload via newscrunch_install_and_activate_plugin
CVSS 9.8
Crowdytheme Arolax < 1.7 - Missing Authorization
CVSS 8.8
Front End Users <= 3.2.32 - Unauthenticated Arbitrary File Upload via Registration Form
CVSS 9.8
SoJ SoundSlides <= 1.2.2 - Authenticated Arbitrary File Upload via soj_soundslides_options_subpanel()
CVSS 8.8
Checkout Mestres do WP for WooCommerce <8.7.5 - Privilege Escalation
CVSS 9.8
Kubio AI Page Builder <2.5.1 - Local File Inclusion
CVSS 9.8
iSpring Embedder <= 1.0 - Cross-Site Request Forgery to Arbitrary File Upload
CVSS 10.0
NgocCode WP Load Gallery <2.1.6 - RCE
CVSS 9.1
MetricThemes Munk Sites <1.0.8 - CSRF
CVSS 9.6
Celestial Aura < 2.2 - Unrestricted Upload of File with Dangerous Type
CVSS 9.9
Motors Plugin <= 1.4.64 - Authenticated Arbitrary Plugin Installation
CVSS 8.8
ThemeEgg ToolKit <= 1.2.9 - Arbitrary File Upload
CVSS 9.1
WPClever WPC Smart Upsell Funnel for WooCommerce <3.0.4 - Missing Authorization
CVSS 8.8
Rometheme RomethemeKit For Elementor <1.5.4 - Code Injection
CVSS 9.9