Search

Search Results (346380 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-37886 2 Inspirythemes, Wordpress 2 Realhomes, Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in InspiryThemes RealHomes realhomes.This issue affects RealHomes: from n/a through < 4.3.8.
CVE-2023-37885 2 Inspirythemes, Wordpress 2 Realhomes, Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in InspiryThemes RealHomes realhomes.This issue affects RealHomes: from n/a through < 4.3.8.
CVE-2023-36681 1 Coolplugins 1 Cryptocurrency Widgets 2026-04-23 5.3 Medium
Missing Authorization vulnerability in CoolHappy Cryptocurrency Widgets – Price Ticker & Coins List cryptocurrency-price-ticker-widget allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cryptocurrency Widgets – Price Ticker & Coins List: from n/a through <= 2.6.2.
CVE-2023-36680 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Iulia Cazan Image Regenerate & Select Crop image-regenerate-select-crop allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Image Regenerate & Select Crop: from n/a through <= 7.1.0.
CVE-2023-36531 2026-04-23 4.3 Medium
Missing Authorization vulnerability in liquidpoll LiquidPoll wp-poll allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects LiquidPoll: from n/a through <= 3.3.68.
CVE-2023-36528 1 Wordpress 1 Wordpress 2026-04-23 5.3 Medium
Missing Authorization vulnerability in properfraction kk Star Ratings kk-star-ratings allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects kk Star Ratings: from n/a through <= 5.4.3.
CVE-2023-36526 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Attinder Singh Duplicate Post Page Menu & Custom Post Type duplicate-post-page-menu-custom-post-type allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Duplicate Post Page Menu & Custom Post Type: from n/a through <= 3.0.1.
CVE-2023-36519 1 Wordpress 1 Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in WPThemeGo SW Product Bundles sw-product-bundles allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SW Product Bundles: from n/a through <= 2.0.15.
CVE-2023-36518 1 Wordpress 1 Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Hugh Lashbrooke Post Hit Counter post-hit-counter allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Post Hit Counter: from n/a through <= 1.3.2.
CVE-2023-36510 2026-04-23 7.3 High
Missing Authorization vulnerability in catkin ReDi Restaurant Reservation redi-restaurant-reservation allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ReDi Restaurant Reservation: from n/a through <= 23.0211.
CVE-2023-36509 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Suresh Chand CHP Ads Block Detector chp-ads-block-detector allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects CHP Ads Block Detector: from n/a through <= 3.9.5.
CVE-2023-36506 2026-04-23 5.3 Medium
Missing Authorization vulnerability in YITHEMES YITH WooCommerce Waiting List yith-woocommerce-waiting-list allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects YITH WooCommerce Waiting List: from n/a through <= 2.13.0.
CVE-2023-36385 1 Wpxpo 1 Postx 2026-04-23 7.1 High
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPXPO PostX ultimate-post allows DOM-Based XSS.This issue affects PostX: from n/a through <= 2.9.9.
CVE-2023-35875 2 Jegstudio, Wordpress 2 Gutenverse, Wordpress 2026-04-23 5.3 Medium
Missing Authorization vulnerability in Jegstudio Gutenverse gutenverse allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Gutenverse: from n/a through <= 1.8.5.
CVE-2023-35777 2026-04-23 5.3 Medium
Missing Authorization vulnerability in StellarWP The Events Calendar the-events-calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects The Events Calendar: from n/a through <= 6.1.2.2.
CVE-2023-35091 1 Storeapps 1 Stock Manager For Woocommerce 2026-04-23 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in storeapps Stock Manager for WooCommerce woocommerce-stock-manager allows Cross Site Request Forgery.This issue affects Stock Manager for WooCommerce: from n/a through <= 2.10.0.
CVE-2023-35052 2026-04-23 4.3 Medium
Missing Authorization vulnerability in wpWax Directorist directorist allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Directorist: from n/a through <= 7.5.4.
CVE-2023-35051 1 Cimatti 1 Wordpress Contact Forms 2026-04-23 5.4 Medium
Missing Authorization vulnerability in cimatti Contact Forms by Cimatti contact-forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Contact Forms by Cimatti: from n/a through <= 1.5.7.
CVE-2023-35046 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Dynamic.ooo Dynamic Visibility for Elementor dynamic-visibility-for-elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Dynamic Visibility for Elementor: from n/a through <= 5.0.5.
CVE-2023-35040 1 Pressified 1 Sendpress 2026-04-23 5.3 Medium
Missing Authorization vulnerability in brewlabs SendPress Newsletters sendpress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SendPress Newsletters: from n/a through <= 1.26.1.20.