WPCafe
Themewinter · 6 CVEs
CVE-2025-39452
HIGH
WordPress WPCafe plugin <= 2.2.32 - Local File Inclusion vulnerability
Apr 17, 2025
CVE-2023-47805
CRITICAL
WordPress WPCafe plugin <= 2.2.22 - Broken Access Control vulnerability
Dec 9, 2024
CVE-2024-43135
HIGH
WordPress WPCafe plugin <= 2.2.28 - Local File Inclusion vulnerability
Aug 13, 2024
CVE-2024-37513
HIGH
WordPress WPCafe plugin <= 2.2.27 - Local File Inclusion vulnerability
Jul 9, 2024
CVE-2024-5431
HIGH
WPCafe – Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce <= 2.2.25 - Authenticated (C…
Jun 25, 2024
CVE-2024-5427
MEDIUM
WPCafe – Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce <= 2.2.24 - Authenticated (C…
May 31, 2024
CVE-2024-1855
MEDIUM
WPCafe <= 2.2.23 - Unauthenticated Blind Server-Side Request Forgery
May 23, 2024
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2025-39452 | WordPress WPCafe plugin <= 2.2.32 - Local File Inclusion vulnerability | HIGH | 0.79% | Apr 17, 2025 |
| CVE-2023-47805 | WordPress WPCafe plugin <= 2.2.22 - Broken Access Control vulnerability | CRITICAL | 0.50% | Dec 9, 2024 |
| CVE-2024-43135 | WordPress WPCafe plugin <= 2.2.28 - Local File Inclusion vulnerability | HIGH | 0.53% | Aug 13, 2024 |
| CVE-2024-37513 | WordPress WPCafe plugin <= 2.2.27 - Local File Inclusion vulnerability | HIGH | 0.56% | Jul 9, 2024 |
| CVE-2024-5431 | WPCafe – Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce <= 2.2.25 - Authenticated (Contributor+) File inclusion via Shortcode | HIGH | 0.59% | Jun 25, 2024 |
| CVE-2024-5427 | WPCafe – Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce <= 2.2.24 - Authenticated (Contributor+) Stored Cross-Site Scripting… | MEDIUM | 0.32% | May 31, 2024 |
| CVE-2024-1855 | WPCafe <= 2.2.23 - Unauthenticated Blind Server-Side Request Forgery | MEDIUM | 0.44% | May 23, 2024 |
Showing 1 to 6 of 6 CVEs