Search

Search Results (346313 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-25486 1 Wordpress 1 Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in migrate Clone wp-clone-by-wp-academy allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Clone: from n/a through <= 2.3.7.
CVE-2023-25469 2 Magazine3, Wordpress 2 Easy Table Of Contents, Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Magazine3 Easy Table of Contents easy-table-of-contents allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Easy Table of Contents: from n/a through <= 2.0.45.2.
CVE-2023-25455 1 Miniorange 1 Wordpress Social Login And Register \(discord\, Google\, Twitter\, Linkedin\) 2026-04-23 5.3 Medium
Missing Authorization vulnerability in miniOrange WordPress Social Login and Register miniorange-login-openid allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WordPress Social Login and Register: from n/a through <= 7.6.0.
CVE-2023-25454 1 Wordpress 1 Nate Reist Protected Posts Logout Button 2026-04-23 6.5 Medium
Missing Authorization vulnerability in Nate Reist Protected Posts Logout Button protected-posts-logout-button allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Protected Posts Logout Button: from n/a through <= 1.4.5.
CVE-2023-25446 1 Wordpress 1 Wordpress 2026-04-23 7.7 High
Missing Authorization vulnerability in HappyFiles HappyFiles Pro happyfiles-pro allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects HappyFiles Pro: from n/a through <= 1.8.1.
CVE-2023-25445 1 Wordpress 1 Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in HappyFiles HappyFiles Pro happyfiles-pro allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects HappyFiles Pro: from n/a through <= 1.8.1.
CVE-2023-25068 1 Wordpress 1 Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Mapro Collins Magazine Edge magazine-edge allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Magazine Edge: from n/a through <= 1.13.
CVE-2023-25067 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Noah Hearle We’re Open! opening-hours allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects We’re Open!: from n/a through <= 1.45.
CVE-2023-25060 1 Wp Onlinesupport Essential Plugin 1 Album And Image Gallery Plus Lightbox 2026-04-23 5.3 Medium
Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Album and Image Gallery plus Lightbox album-and-image-gallery-plus-lightbox allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Album and Image Gallery plus Lightbox: from n/a through <= 1.6.2.
CVE-2023-25048 1 Fantastic Plugins 1 Fantastic Content Protector Free 2026-04-23 5.3 Medium
Missing Authorization vulnerability in Fantastic Plugins Fantastic Content Protector Free fantastic-content-protector-free allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Fantastic Content Protector Free: from n/a through <= 2.6.
CVE-2023-25037 2 Codepeople, Wordpress 2 Booking Calendar Contact Form, Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in codepeople Booking Calendar Contact Form booking-calendar-contact-form allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booking Calendar Contact Form: from n/a through <= 1.2.34.
CVE-2023-25035 1 Fullworksplugins 1 Quick Contact Form 2026-04-23 6.5 Medium
Missing Authorization vulnerability in Saad Iqbal Quick Contact Form quick-contact-form allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Quick Contact Form: from n/a through <= 8.0.3.1.
CVE-2023-25026 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Otávio Augusto PayPal Brasil para WooCommerce paypal-brasil-para-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PayPal Brasil para WooCommerce: from n/a through <= 1.4.2.
CVE-2023-24407 1 Wpdevart 1 Booking Calendar 2026-04-23 5 Medium
Missing Authorization vulnerability in wpdevart Booking calendar, Appointment Booking System booking-calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booking calendar, Appointment Booking System: from n/a through <= 3.2.3.
CVE-2023-24375 2 Miniorange, Wordpress 2 Wordpress Social Login And Register (discord, Google, Twitter, Linkedin), Wordpress 2026-04-23 3.5 Low
Missing Authorization vulnerability in miniOrange WordPress Social Login and Register miniorange-login-openid allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WordPress Social Login and Register: from n/a through <= 7.5.14.
CVE-2023-23989 1 Metagauss 1 Registrationmagic 2026-04-23 5.3 Medium
Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in Metagauss RegistrationMagic custom-registration-form-builder-with-submission-manager allows Code Injection.This issue affects RegistrationMagic: from n/a through <= 5.1.9.2.
CVE-2023-23987 1 Wpeverest 1 User Registration 2026-04-23 5.9 Medium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wpeverest User Registration user-registration allows DOM-Based XSS.This issue affects User Registration: from n/a through <= 2.3.0.
CVE-2023-23986 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Noah Hearle Reviews and Rating – Google My Business g-business-reviews-rating allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Reviews and Rating – Google My Business: from n/a through <= 4.14.
CVE-2023-23975 1 Fullworksplugins 1 Quick Event Manager 2026-04-23 5.3 Medium
Missing Authorization vulnerability in brightvesseldev Quick Event Manager quick-event-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Quick Event Manager: from n/a through <= 9.7.4.
CVE-2023-23895 1 Codepeople 1 Wp Time Slots Booking Form 2026-04-23 4.7 Medium
Missing Authorization vulnerability in codepeople WP Time Slots Booking Form wp-time-slots-booking-form allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Time Slots Booking Form: from n/a through <= 1.1.82.