Desorden
118 exploits
Active since Nov 2023
PT Project Notebooks 1.0.0-1.1.3 - Unauthenticated Privilege Escalation via wpnb_pto_new_users_add()
CVSS 9.8
Alone - Charity Multipurpose Non-profit WordPress Theme <7.8.3 - RCE
CVSS 9.8
HyperComments <1.2.2 - Privilege Escalation
CVSS 8.8
WPvivid Backup & Migration < 0.9.116 - Authenticated Arbitrary File Upload via wpvivid_upload_import_files
CVSS 7.2
WPBookit <= 1.0.4 - Unauthenticated Arbitrary File Upload via image_upload_handle Function
CVSS 9.8
WooCommerce Designer Pro <1.9.26 - RCE
CVSS 9.8
Imithemes Real Spaces - WordPress Properties Directory Theme <= 3.6 - Privilege Escalation
CVSS 9.8
Opal Estate Pro - Property Management and Submission <=1.7.5 - Privilege Escalation
CVSS 9.8
HT Contact Form Widget <= 2.2.1 - Unauthenticated Arbitrary File Upload
CVSS 9.8
WordPress Premium Age Verification <3.0.2 - Info Disclosure
CVSS 9.8
StoryChief <= 1.0.42 - Unauthenticated Arbitrary File Upload via Webhook REST-API Endpoint
CVSS 9.8
RingCentral Communications <1.6.8 - Auth Bypass
CVSS 9.8
AdForest theme <6.0.9 - Auth Bypass
CVSS 9.8
BeyondCart Connector <2.1.0 - Privilege Escalation
CVSS 9.8
Copypress Rest API 1.1-1.2 - Unauthenticated Remote Code Execution via JWT Token Forgery
CVSS 9.8
Cloudflare Image Resizing <1.5.6 - RCE
CVSS 9.8
RestroPress 3.0.0-3.1.9.2 - Unauthenticated Authentication Bypass via REST API
CVSS 9.8
Appy Pie Connect <1.1.2 - Privilege Escalation
CVSS 9.8