Search

Search Results (346386 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-41686 2 Ilghera, Wordpress 2 Woocommerce Support System, Wordpress 2026-04-23 6.5 Medium
Cross-Site Request Forgery (CSRF) vulnerability in ilGhera Woocommerce Support System wc-support-system allows Cross Site Request Forgery.This issue affects Woocommerce Support System: from n/a through <= 1.2.2.
CVE-2023-41683 1 Wordpress 1 Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in pechenki TelSender telsender allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects TelSender: from n/a through <= 1.14.11.
CVE-2023-41671 2026-04-23 N/A
Missing Authorization vulnerability in tychesoftwares Abandoned Cart Lite for WooCommerce woocommerce-abandoned-cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Abandoned Cart Lite for WooCommerce: from n/a through <= 5.16.1.
CVE-2023-41664 2026-04-23 6.5 Medium
Missing Authorization vulnerability in Alpha BPO Easy Newsletter Signups easy-newsletter-signups allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Easy Newsletter Signups: from n/a through <= 1.0.4.
CVE-2023-41649 2026-04-23 6.5 Medium
Missing Authorization vulnerability in hoangkhanh92 Ovic Product Bundle ovic-product-bundle allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ovic Product Bundle: from n/a through <= 1.1.2.
CVE-2023-41133 1 Wordpress 1 Wordpress 2026-04-23 5.3 Medium
Authentication Bypass by Spoofing vulnerability in Minor Secure Admin IP secure-admin-ip allows Functionality Bypass.This issue affects Secure Admin IP: from n/a through <= 2.0.
CVE-2023-41132 2026-04-23 4.3 Medium
Missing Authorization vulnerability in ShapedPlugin LLC Category Slider for WooCommerce woo-category-slider-grid allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Category Slider for WooCommerce: from n/a through <= 1.4.15.
CVE-2023-41130 2026-04-23 N/A
Missing Authorization vulnerability in Premmerce Premmerce User Roles premmerce-user-roles allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Premmerce User Roles: from n/a through <= 1.0.12.
CVE-2023-40678 2026-04-23 N/A
Missing Authorization vulnerability in Andrew Fiebert Simple URLs simple-urls allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Simple URLs: from n/a through <= 117.
CVE-2023-40670 1 Wpdeveloper 1 Reviewx 2026-04-23 4.3 Medium
Missing Authorization vulnerability in ReviewX ReviewX reviewx allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ReviewX: from n/a through <= 1.6.17.
CVE-2023-40334 1 Pluginus 1 Husky - Products Filter Professional For Woocommerce 2026-04-23 8.8 High
Missing Authorization vulnerability in RealMag777 HUSKY woocommerce-products-filter allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects HUSKY: from n/a through <= 1.3.4.2.
CVE-2023-40331 1 Wordpress 1 Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in bqworks Accordion Slider accordion-slider allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Accordion Slider: from n/a through <= 1.9.6.
CVE-2023-40213 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Damian Góra Justified Gallery justified-gallery allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Justified Gallery: from n/a through <= 1.7.3.
CVE-2023-40209 2 Himalaya Saxena, Himalayasaxena 2 Highcompress Image Compressor, Highcompress Image Compressor 2026-04-23 6.5 Medium
Missing Authorization vulnerability in himalayasaxena Highcompress Image Compressor high-compress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Highcompress Image Compressor: from n/a through <= 6.1.2.
CVE-2023-40205 1 Pixelgrade 1 Pixtypes 2026-04-23 7.1 High
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in pixelgrade PixTypes pixtypes allows DOM-Based XSS.This issue affects PixTypes: from n/a through <= 1.4.15.
CVE-2023-40203 1 Mailmunch 1 Mailchimp Forms 2026-04-23 4.3 Medium
Missing Authorization vulnerability in mailmunch MailChimp Forms by MailMunch mailchimp-forms-by-mailmunch allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects MailChimp Forms by MailMunch: from n/a through <= 3.1.4.
CVE-2023-40011 2 Stylemixthemes, Wordpress 2 Cost Calculator Builder, Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Stylemix Cost Calculator Builder cost-calculator-builder allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cost Calculator Builder: from n/a through <= 3.1.42.
CVE-2023-40005 1 Awesomemotive 1 Easy Digital Downloads 2026-04-23 9.8 Critical
Missing Authorization vulnerability in Syed Balkhi Easy Digital Downloads easy-digital-downloads allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Easy Digital Downloads: from n/a through <= 3.1.5.
CVE-2023-40003 1 Wedevs 1 Wp Project Manager 2026-04-23 9.8 Critical
Missing Authorization vulnerability in weDevs WP Project Manager wedevs-project-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Project Manager: from n/a through <= 2.6.7.
CVE-2023-40001 1 Wordpress 1 Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in StellarWP iThemes Sync ithemes-sync allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects iThemes Sync: from n/a through <= 2.1.13.