Search Results (74806 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-48045 1 Leevio 1 Happy Addons For Elementor 2026-04-01 8.8 High
Missing Authorization vulnerability in HappyMonster Happy Addons for Elementor happy-elementor-addons allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Happy Addons for Elementor: from n/a through <= 3.12.3.
CVE-2024-48044 1 Shortpixel 1 Image Optimizer 2026-04-01 8.8 High
Missing Authorization vulnerability in ShortPixel ShortPixel Image Optimizer shortpixel-image-optimiser allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ShortPixel Image Optimizer: from n/a through <= 5.6.3.
CVE-2024-48039 1 Cubewp 1 Cubewp 2026-04-01 8.8 High
Missing Authorization vulnerability in Imran Tauqeer CubeWP cubewp-framework allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects CubeWP: from n/a through <= 1.1.15.
CVE-2024-47637 2 Litespeed Technologies, Litespeedtech 2 Litespeed Cache, Litespeed Cache 2026-04-01 8.8 High
Relative Path Traversal vulnerability in LiteSpeed Technologies LiteSpeed Cache litespeed-cache allows Path Traversal.This issue affects LiteSpeed Cache: from n/a through <= 6.4.1.
CVE-2024-47362 1 Wpchill 1 Strong Testimonials 2026-04-01 8.8 High
Missing Authorization vulnerability in WP Chill Strong Testimonials strong-testimonials.This issue affects Strong Testimonials: from n/a through <= 3.1.16.
CVE-2024-47361 1 Webtechstreet 1 Elementor Addon Elements 2026-04-01 8.8 High
Missing Authorization vulnerability in WPVibes Elementor Addon Elements addon-elements-for-elementor-page-builder.This issue affects Elementor Addon Elements: from n/a through <= 1.13.6.
CVE-2024-47328 1 Funnelkit 1 Funnelkit Automations 2026-04-01 7.2 High
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aman FunnelKit Automations wp-marketing-automations allows SQL Injection.This issue affects FunnelKit Automations: from n/a through <= 3.1.2.
CVE-2024-47325 1 Themeisle 1 Multiple Page Generator 2026-04-01 8.8 High
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeisle MPG multiple-pages-generator-by-porthas allows SQL Injection.This issue affects MPG: from n/a through <= 3.4.7.
CVE-2024-47318 1 Magazine3 1 Pwa For Wp \& Amp 2026-04-01 8.8 High
Missing Authorization vulnerability in Magazine3 PWA for WP & AMP pwa-for-wp.This issue affects PWA for WP & AMP: from n/a through <= 1.7.72.
CVE-2024-47317 1 Wpquads 1 Ads 2026-04-01 8.8 High
Missing Authorization vulnerability in Ads by WPQuads Ads by WPQuads quick-adsense-reloaded.This issue affects Ads by WPQuads: from n/a through <= 2.0.84.
CVE-2024-47316 1 Salonbookingsystem 1 Salon Booking System 2026-04-01 8.8 High
Authorization Bypass Through User-Controlled Key vulnerability in Dimitri Grassi Salon booking system salon-booking-system.This issue affects Salon booking system: from n/a through <= 10.9.
CVE-2024-47315 1 Givewp 1 Givewp 2026-04-01 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in StellarWP GiveWP give.This issue affects GiveWP: from n/a through <= 3.15.1.
CVE-2024-47314 1 Sunshinephotocart 1 Sunshine Photo Cart 2026-04-01 8.8 High
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through <= 3.2.8.
CVE-2024-47305 1 Dineshkarki 1 Use Any Font 2026-04-01 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in Dnesscarkey Use Any Font use-any-font allows Cross Site Request Forgery.This issue affects Use Any Font: from n/a through <= 6.3.08.
CVE-2024-44052 1 Helloasso 1 Helloasso 2026-04-01 8.8 High
Missing Authorization vulnerability in HelloAsso HelloAsso helloasso.This issue affects HelloAsso: from n/a through <= 1.1.10.
CVE-2024-44031 1 Beardev 1 Joomsport 2026-04-01 8.8 High
Missing Authorization vulnerability in beardev JoomSport joomsport-sports-league-results-management.This issue affects JoomSport: from n/a through <= 5.6.3.
CVE-2024-44021 1 Truepush 1 Truepush 2026-04-01 8.8 High
Missing Authorization vulnerability in truepushplugin Truepush truepush-free-web-push-notifications.This issue affects Truepush: from n/a through <= 1.0.8.
CVE-2024-44020 1 Prasadkirpekar 1 Wp Free Ssl 2026-04-01 8.8 High
Missing Authorization vulnerability in prasadkirpekar WP Free SSL – Free SSL Certificate for WordPress and force HTTPS wp-free-ssl.This issue affects WP Free SSL – Free SSL Certificate for WordPress and force HTTPS: from n/a through <= 1.2.7.
CVE-2024-44006 1 Onthegosystems 1 Woocommerce Multilingual \& Multicurrency 2026-04-01 8.8 High
Missing Authorization vulnerability in Amir Helzer WooCommerce Multilingual & Multicurrency woocommerce-multilingual.This issue affects WooCommerce Multilingual & Multicurrency: from n/a through <= 5.3.6.
CVE-2024-43973 1 Ayecode 1 Getpaid 2026-04-01 8.8 High
Missing Authorization vulnerability in Stiofan GetPaid invoicing allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects GetPaid: from n/a through <= 2.8.11.