Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2024-11-01 CVE-2024-43962 Missing Authorization vulnerability in LWS Affiliation
Missing Authorization vulnerability in LWS LWS Affiliation allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects LWS Affiliation: from n/a through 2.3.4.
network
low complexity
lws CWE-862
8.8
2024-11-01 CVE-2024-43968 Missing Authorization vulnerability in Newspack
Broken Access Control vulnerability in Automattic Newspack allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Newspack: from n/a through 3.8.6.
network
low complexity
newspack CWE-862
8.8
2024-11-01 CVE-2024-43973 Missing Authorization vulnerability in Ayecode Getpaid
Missing Authorization vulnerability in AyeCode Ltd GetPaid allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects GetPaid: from n/a through 2.8.11.
network
low complexity
ayecode CWE-862
8.8
2024-11-01 CVE-2024-43981 Missing Authorization vulnerability in Ayecode Geodirectory
Missing Authorization vulnerability in AyeCode – WP Business Directory Plugins GeoDirectory allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects GeoDirectory: from n/a through 2.3.70.
network
low complexity
ayecode CWE-862
8.8
2024-11-01 CVE-2024-43982 Missing Authorization vulnerability in Geekcodelab Login AS Users
Missing Authorization vulnerability in Geek Code Lab Login As Users allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Login As Users: from n/a through 1.4.3.
network
low complexity
geekcodelab CWE-862
8.8
2024-11-01 CVE-2024-44006 Missing Authorization vulnerability in Onthegosystems Woocommerce Multilingual & Multicurrency
Missing Authorization vulnerability in OnTheGoSystems WooCommerce Multilingual & Multicurrency multilingual allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WooCommerce Multilingual & Multicurrency: from n/a through 5.3.6.
network
low complexity
onthegosystems CWE-862
8.8
2024-11-01 CVE-2024-44020 Missing Authorization vulnerability in Prasadkirpekar WP Free SSL
Missing Authorization vulnerability in Prasad Kirpekar WP Free SSL – Free SSL Certificate for WordPress and force HTTPS allows . This issue affects WP Free SSL – Free SSL Certificate for WordPress and force HTTPS: from n/a through 1.2.6.
network
low complexity
prasadkirpekar CWE-862
8.8
2024-11-01 CVE-2024-44021 Missing Authorization vulnerability in Truepush
Missing Authorization vulnerability in Truepush allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Truepush: from n/a through 1.0.8.
network
low complexity
truepush CWE-862
8.8
2024-11-01 CVE-2024-44031 Missing Authorization vulnerability in Beardev Joomsport
Missing Authorization vulnerability in BearDev JoomSport allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects JoomSport: from n/a through 5.6.3.
network
low complexity
beardev CWE-862
8.8
2024-11-01 CVE-2024-44052 Missing Authorization vulnerability in Helloasso
Missing Authorization vulnerability in HelloAsso allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects HelloAsso: from n/a through 1.1.10.
network
low complexity
helloasso CWE-862
8.8