Vulnerabilities > Missing Authorization

DATE CVE VULNERABILITY TITLE RISK
2024-11-06 CVE-2024-6626 Missing Authorization vulnerability in Theinnovs Eleforms
The EleForms – All In One Form Integration including DB for Elementor plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on several functions in all versions up to, and including, 2.9.9.9.
network
low complexity
theinnovs CWE-862
5.3
2024-11-05 CVE-2024-7429 Missing Authorization vulnerability in Katieseaborn Zotpress
The Zotpress plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the Zotpress_process_accounts_AJAX function in all versions up to, and including, 7.3.12.
network
low complexity
katieseaborn CWE-862
4.3
2024-11-01 CVE-2024-43293 Missing Authorization vulnerability in Wpzoom Recipe Card Blocks for Gutenberg & Elementor
Missing Authorization vulnerability in WPZOOM Recipe Card Blocks for Gutenberg & Elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Recipe Card Blocks for Gutenberg & Elementor: from n/a through 3.3.1.
network
low complexity
wpzoom CWE-862
8.8
2024-11-01 CVE-2024-43296 Missing Authorization vulnerability in Bplugins Html5 Video Player
Missing Authorization vulnerability in bPlugins LLC Flash & HTML5 Video allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Flash & HTML5 Video: from n/a through 2.5.30.
network
low complexity
bplugins CWE-862
8.8
2024-11-01 CVE-2024-43297 Missing Authorization vulnerability in Backupbliss Clone
Missing Authorization vulnerability in Migrate Clone allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Clone: from n/a through 2.4.5.
network
low complexity
backupbliss CWE-862
8.8
2024-11-01 CVE-2024-43298 Missing Authorization vulnerability in Backupbliss Clone
Missing Authorization vulnerability in Migrate Clone allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Clone: from n/a through 2.4.5.
network
low complexity
backupbliss CWE-862
8.8
2024-11-01 CVE-2024-43302 Missing Authorization vulnerability in Fontsplugin Fonts
Missing Authorization vulnerability in Fonts Plugin Fonts allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Fonts: from n/a through 3.7.7.
network
low complexity
fontsplugin CWE-862
8.8
2024-11-01 CVE-2024-43310 Missing Authorization vulnerability in Ukrsolution Print Labels With Barcodes
Missing Authorization vulnerability in UkrSolution Print Barcode Labels for your WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Print Barcode Labels for your WooCommerce products/orders: from n/a through 3.4.9.
network
low complexity
ukrsolution CWE-862
8.8
2024-11-01 CVE-2024-43312 Missing Authorization vulnerability in Wpclever WPC Frequently Bought Together for Woocommerce
Missing Authorization vulnerability in WPClever WPC Frequently Bought Together for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WPC Frequently Bought Together for WooCommerce: from n/a through 7.1.9.
network
low complexity
wpclever CWE-862
8.8
2024-11-01 CVE-2024-43314 Missing Authorization vulnerability in Gabelivan Asset Cleanup
Missing Authorization vulnerability in Gabe Livan Asset CleanUp: Page Speed Booster allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Asset CleanUp: Page Speed Booster: from n/a through 1.3.9.3.
network
low complexity
gabelivan CWE-862
8.8