Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2024-11-01 CVE-2024-47314 Missing Authorization vulnerability in Sunshinephotocart Sunshine Photo Cart
Missing Authorization vulnerability in WP Sunshine Sunshine Photo Cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through 3.2.8.
network
low complexity
sunshinephotocart CWE-862
8.8
2024-11-01 CVE-2024-47317 Missing Authorization vulnerability in Wpquads ADS
Missing Authorization vulnerability in WP Quads Ads by WPQuads – Adsense Ads, Banner Ads, Popup Ads allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ads by WPQuads – Adsense Ads, Banner Ads, Popup Ads: from n/a through 2.0.84.
network
low complexity
wpquads CWE-862
8.8
2024-11-01 CVE-2024-47318 Missing Authorization vulnerability in Magazine3 PWA for WP & AMP
Missing Authorization vulnerability in Magazine3 PWA for WP & AMP allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PWA for WP & AMP: from n/a through 1.7.72.
network
low complexity
magazine3 CWE-862
8.8
2024-11-01 CVE-2024-47361 Missing Authorization vulnerability in Webtechstreet Elementor Addon Elements
Missing Authorization vulnerability in WPVibes Elementor Addon Elements allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Elementor Addon Elements: from n/a through 1.13.6.
network
low complexity
webtechstreet CWE-862
8.8
2024-11-01 CVE-2024-47362 Missing Authorization vulnerability in Wpchill Strong Testimonials
Missing Authorization vulnerability in WPChill Strong Testimonials allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Strong Testimonials: from n/a through 3.1.16.
network
low complexity
wpchill CWE-862
8.8
2024-11-01 CVE-2024-48039 Missing Authorization vulnerability in Cubewp
Missing Authorization vulnerability in CubeWP CubeWP – All-in-One Dynamic Content Framework allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects CubeWP – All-in-One Dynamic Content Framework: from n/a through 1.1.15.
network
low complexity
cubewp CWE-862
8.8
2024-11-01 CVE-2024-48044 Missing Authorization vulnerability in Shortpixel Image Optimizer
Missing Authorization vulnerability in ShortPixel – Convert WebP/AVIF & Optimize Images ShortPixel Image Optimizer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects ShortPixel Image Optimizer: from n/a through 5.6.3.
network
low complexity
shortpixel CWE-862
8.8
2024-11-01 CVE-2024-48045 Missing Authorization vulnerability in Leevio Happy Addons for Elementor
Missing Authorization vulnerability in Leevio Happy Addons for Elementor allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Happy Addons for Elementor: from n/a through 3.12.3.
network
low complexity
leevio CWE-862
8.8
2024-11-01 CVE-2024-49256 Incorrect Authorization vulnerability in Wpchill Htaccess File Editor
Incorrect Authorization vulnerability in WPChill Htaccess File Editor allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Htaccess File Editor: from n/a through 1.0.18.
network
low complexity
wpchill CWE-863
8.8
2024-11-01 CVE-2024-10612 SQL Injection vulnerability in Esafenet CDG 5
A vulnerability was found in ESAFENET CDG 5.
network
low complexity
esafenet CWE-89
8.8