CVE Browser

More filters (active)

Page 1 (more results available)

Vendor: Webfactory Remove filter Clear all
CVE-2026-100518 MEDIUM

WordPress Advanced Google reCAPTCHA plugin <= 5.40 - Broken Authentication vulnerability

CVSS 5.3 EPSS 0.26% Oct 6, 2026
CVE-2026-97308 MEDIUM

WordPress Login Lockdown plugin <= 2.17 - Bypass Vulnerability vulnerability

CVSS 4.8 EPSS 0.19% Oct 6, 2026
CVE-2026-94457 MEDIUM

WordPress Captcha Code plugin <= 3.32 - Bypass Vulnerability vulnerability

CVSS 4.8 EPSS 0.19% Sep 23, 2026
CVE-2026-94174 HIGH

WordPress Email Log plugin <= 2.63 - SQL Injection vulnerability

CVSS 7.6 EPSS 0.29% Sep 23, 2026
CVE-2026-11426 MEDIUM

UnderConstructionPage PRO <= 5.76 - Authenticated (Subscriber+) Arbitrary File Read via template_thumbnail Parameter

CVSS 6.5 EPSS 0.46% Jul 11, 2026
CVE-2026-5411 HIGH

WP Captcha PRO <= 5.38 - Missing Authorization to Authenticated (Subscriber+) Arbitrary File Upload

CVSS 8.8 EPSS 0.79% Jun 5, 2026
CVE-2026-5415 HIGH

WP Captcha PRO <= 5.38 - Authenticated (Subscriber+) Authentication Bypass via Temporary Login Link

CVSS 8.8 EPSS 0.59% Jun 5, 2026
CVE-2024-13362 MEDIUM

Freemius <= 2.10.1 - Reflected DOM-Based Cross-Site Scripting via url Parameter

CVSS 6.1 EPSS 0.28% May 1, 2026
CVE-2025-11707 MEDIUM

Login Lockdown & Protection <= 2.14 - IP Block Bypass

CVSS 5.3 EPSS 0.45% Dec 13, 2025
CVE-2025-10645 MEDIUM

WP Reset <= 2.05 - Unauthenticated Sensitive Information Exposure via wf-licensing.log

CVSS 5.3 EPSS 0.31% Oct 7, 2025
CVE-2025-23968 CRITICAL

WordPress AiBud WP plugin <= 1.9 - Arbitrary File Upload vulnerability

CVSS 9.1 EPSS 0.50% Jul 3, 2025
CVE-2025-3766 MEDIUM

Login Lockdown & Protection <= 2.11 - Missing Authorization to Authenticated (Subscriber+) Arbitrary IP Whitelisting

CVSS 5.4 EPSS 0.33% May 7, 2025
CVE-2025-2074 MEDIUM

Advanced Google reCAPTCHA <= 1.29 - Authenticated (Subscriber+) Limited SQL Injection via 'sSearch' Parameter

CVSS 5.3 EPSS 0.42% Mar 28, 2025
CVE-2025-1262 MEDIUM

Advanced Google reCaptcha <= 1.27 - Built-in Math CAPTCHA Bypass

CVSS 5.3 EPSS 0.34% Feb 25, 2025
CVE-2024-13623 MEDIUM

Order Export for WooCommerce <= 3.24 - Unauthenticated Sensitive Information Exposure Through Unprotected Directory

CVSS 5.9 EPSS 0.47% Jan 31, 2025
CVE-2024-12034 MEDIUM

Advanced Google reCAPTCHA <= 1.25 - Brute Force Protection IP Unblock

CVSS 5.3 EPSS 0.35% Dec 24, 2024
CVE-2024-43259 HIGH

WordPress Order Export for WooCommerce plugin <= 3.23 - Sensitive Data Exposure vulnerability

CVSS 7.5 EPSS 0.37% Aug 26, 2024
CVE-2024-5087 MEDIUM

Minimal Coming Soon – Coming Soon Page <= 2.38 - Missing Authorization to Limited Settings Change

CVSS 6.3 EPSS 0.44% Jun 8, 2024
CVE-2024-4661 MEDIUM

WP Reset <= 2.02 - Missing Authorization to License Key Modification

CVSS 4.3 EPSS 0.28% Jun 8, 2024
CVE-2024-5770 MEDIUM

WP Force SSL & HTTPS SSL Redirect <= 1.66 - Missing Authorization to Settings Update

CVSS 4.3 EPSS 0.35% Jun 8, 2024
CVE-2023-48745 MEDIUM

WordPress Captcha Code plugin <= 2.9 - Captcha Bypass vulnerability

CVSS 5.3 EPSS 0.35% Jun 4, 2024
CVE-2024-0867 HIGH

Email Log <= 2.4.8 - Unauthenticated Hook Injection

CVSS 8.1 EPSS 0.82% May 24, 2024
CVE-2023-6799 MEDIUM

WP Reset <= 2.0 - Sensitive Information Exposure due to Insufficient Randomness

CVSS 5.9 EPSS 0.70% Apr 9, 2024
CVE-2024-1501 MEDIUM

Database Reset <= 3.22 - Cross-Site Request Forgery to WP Reset Plugin Installation

CVSS 4.7 EPSS 0.27% Feb 21, 2024
CVE-2024-1340 MEDIUM

Login Lockdown – Protect Login Form <= 2.08 - Missing Authorization

CVSS 5.4 EPSS 0.39% Feb 20, 2024

Showing 1 to 25 CVEs · page 1 (more available)