Total
5646 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2025-39531 | 2025-04-16 | N/A | 5.3 MEDIUM | ||
| Missing Authorization vulnerability in slazzercom Slazzer Background Changer allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Slazzer Background Changer: from n/a through 3.14. | |||||
| CVE-2025-39513 | 2025-04-16 | N/A | 5.3 MEDIUM | ||
| Missing Authorization vulnerability in ActiveDEMAND Online Agency Marketing Automation ActiveDEMAND allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects ActiveDEMAND: from n/a through 0.2.46. | |||||
| CVE-2025-39602 | 2025-04-16 | N/A | 4.3 MEDIUM | ||
| Missing Authorization vulnerability in WC Product Table WooCommerce Product Table Lite allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WooCommerce Product Table Lite: from n/a through 3.9.5. | |||||
| CVE-2025-39552 | 2025-04-16 | N/A | 5.4 MEDIUM | ||
| Missing Authorization vulnerability in Dylan James Zephyr Project Manager allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Zephyr Project Manager: from n/a through 3.3.200. | |||||
| CVE-2025-39522 | 2025-04-16 | N/A | 5.4 MEDIUM | ||
| Missing Authorization vulnerability in Sebastian Lee Dynamic Post allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Dynamic Post: from n/a through 4.10. | |||||
| CVE-2025-39571 | 2025-04-16 | N/A | 4.3 MEDIUM | ||
| Missing Authorization vulnerability in WPXPO WowStore allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WowStore: from n/a through 4.2.4. | |||||
| CVE-2025-39545 | 2025-04-16 | N/A | 5.4 MEDIUM | ||
| Missing Authorization vulnerability in miniOrange WordPress REST API Authentication allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WordPress REST API Authentication: from n/a through 3.6.3. | |||||
| CVE-2025-39560 | 2025-04-16 | N/A | 5.4 MEDIUM | ||
| Missing Authorization vulnerability in Shahjada Live Forms allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Live Forms: from n/a through 4.8.4. | |||||
| CVE-2025-30960 | 2025-04-16 | N/A | 8.3 HIGH | ||
| Missing Authorization vulnerability in NotFound FS Poster. This issue affects FS Poster: from n/a through 6.5.8. | |||||
| CVE-2025-39591 | 2025-04-16 | N/A | 5.4 MEDIUM | ||
| Missing Authorization vulnerability in WP Shuffle WP Subscription Forms allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Subscription Forms: from n/a through 1.2.3. | |||||
| CVE-2025-26953 | 2025-04-16 | N/A | 7.5 HIGH | ||
| Missing Authorization vulnerability in NotFound JetMenu allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects JetMenu: from n/a through 2.4.9. | |||||
| CVE-2025-27008 | 2025-04-16 | N/A | 7.5 HIGH | ||
| Missing Authorization vulnerability in NotFound Unlimited Timeline allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Unlimited Timeline: from n/a through n/a. | |||||
| CVE-2024-30477 | 1 Klarna | 1 Klarna For Woocommerce | 2025-04-15 | N/A | 5.3 MEDIUM |
| Missing Authorization vulnerability in Klarna Klarna Payments for WooCommerce.This issue affects Klarna Payments for WooCommerce: from n/a through 3.2.4. | |||||
| CVE-2024-53825 | 1 Ninjateam | 1 Filebird | 2025-04-15 | N/A | 4.7 MEDIUM |
| Missing Authorization vulnerability in Ninja Team Filebird allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Filebird: from n/a through 6.3.2. | |||||
| CVE-2023-25966 | 1 Ninjateam | 1 Filebird | 2025-04-15 | N/A | 5.5 MEDIUM |
| Missing Authorization vulnerability in Ninja Team Filebird allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Filebird: from n/a through 5.1.4. | |||||
| CVE-2025-32929 | 2025-04-15 | N/A | 7.5 HIGH | ||
| Missing Authorization vulnerability in Dmitry V. (CEO of "UKR Solution") Barcode Generator for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Barcode Generator for WooCommerce: from n/a through 2.0.4. | |||||
| CVE-2025-26958 | 2025-04-15 | N/A | 7.5 HIGH | ||
| Missing Authorization vulnerability in NotFound JetBlog allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects JetBlog: from n/a through 2.4.3. | |||||
| CVE-2025-26959 | 2025-04-15 | N/A | 8.8 HIGH | ||
| Missing Authorization vulnerability in Quý Lê 91 Administrator Z allows Privilege Escalation. This issue affects Administrator Z: from n/a through 2025.03.24. | |||||
| CVE-2025-26944 | 2025-04-15 | N/A | 7.5 HIGH | ||
| Missing Authorization vulnerability in NotFound JetPopup allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects JetPopup: from n/a through 2.0.11. | |||||
| CVE-2025-26942 | 2025-04-15 | N/A | 7.5 HIGH | ||
| Missing Authorization vulnerability in NotFound JetTricks allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects JetTricks: from n/a through 1.5.1. | |||||
