| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| The Tickera – Sell Tickets & Manage Events plugin for WordPress is vulnerable to generic SQL Injection via the 'tc_order_status_filter' parameter in all versions up to, and including, 3.6.0.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with staff-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. |
| Unauthenticated Broken Access Control in WP Fast Total Search <= 1.81.282 versions. |
| Contributor Arbitrary File Deletion in Picture Gallery <= 1.6.5 versions. |
| Subscriber Arbitrary Content Deletion in WP EasyPay <= 4.5.0 versions. |
| Unauthenticated Arbitrary File Deletion in Broadcast Live Video <= 7.2.4 versions. |
| Unauthenticated Sensitive Data Exposure in Ninja Tables <= 5.2.10 versions. |
| Subscriber Broken Access Control in WP ERP <= 1.17.5 versions. |
| Unauthenticated SQL Injection in Bookly <= 27.7 versions. |
| Unauthenticated Sensitive Data Exposure in Complianz <= 7.5.0 versions. |
| Shop manager SQL Injection in Persian Woocommerce SMS <= 7.2.2 versions. |
| Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Chill Modula Image Gallery allows Stored XSS.
This issue affects Modula Image Gallery: from 2.14.25 through 2.14.30. |
| DOMPurify before 3.4.11 fails to clone the ALLOWED_ATTR allowlist when setConfig() is used with an uponSanitizeAttribute hook, allowing the hook to permanently mutate the shared allowlist. Attackers can register a hook that conditionally allows dangerous attributes like onerror for trusted elements, then submit untrusted content that inherits the polluted allowlist and executes event handlers as stored XSS. |
| DOMPurify before 3.3.2 contains a URI validation bypass vulnerability when ADD_ATTR is provided as a predicate function via EXTRA_ELEMENT_HANDLING.attributeCheck. Attackers can supply a predicate that accepts specific attribute and tag combinations to bypass URI-safe validation, allowing unsafe protocols like javascript: to survive sanitization and execute as DOM-based XSS when the link is activated. |
| Administrator Arbitrary File Upload in MapSVG <= 8.14.0 versions. |
| Unauthenticated Broken Access Control in LA-Studio Element Kit for Elementor <= 1.6.2 versions. |
| Unauthenticated Broken Access Control in Dokan Pro <= 5.0.3 versions. |
| Contributor Cross Site Scripting (XSS) in Ultimate Store Kit Elementor Addons <= 3.0.5 versions. |
| DOMPurify before 3.4.0 contains a logic error in the ADD_TAGS function where short-circuit evaluation allows forbidden tags to bypass FORBID_TAGS restrictions. Attackers can craft input containing tags listed in FORBID_TAGS that are also added via ADD_TAGS function, causing them to be retained in sanitized output. |
| This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. |
| Unauthenticated Broken Access Control in Graphina <= 3.1.12 versions. |