Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2024-12-09 CVE-2023-24407 Missing Authorization vulnerability in Wpdevart Booking Calendar
Missing Authorization vulnerability in WpDevArt Booking calendar, Appointment Booking System allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booking calendar, Appointment Booking System: from n/a through 3.2.3.
network
low complexity
wpdevart CWE-862
8.8
2024-12-09 CVE-2023-30873 Missing Authorization vulnerability in Androidbubble WP Docs
Missing Authorization vulnerability in Fahad Mahmood WP Docs allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Docs: from n/a through 1.9.8.
network
low complexity
androidbubble CWE-862
8.8
2024-12-09 CVE-2023-47760 Missing Authorization vulnerability in Wpdeveloper Essential Blocks
Missing Authorization vulnerability in WPDeveloper Essential Blocks for Gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Blocks for Gutenberg: from n/a through 4.2.0.
network
low complexity
wpdeveloper CWE-862
8.8
2024-12-09 CVE-2023-47822 Missing Authorization vulnerability in Sonaar MP3 Audio Player for Music, Radio & Podcast
Missing Authorization vulnerability in Sonaar Music MP3 Audio Player for Music, Radio & Podcast by Sonaar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects MP3 Audio Player for Music, Radio & Podcast by Sonaar: from n/a through 4.10.
network
low complexity
sonaar CWE-862
8.8
2024-12-09 CVE-2023-49831 Missing Authorization vulnerability in Metagauss Registrationmagic
Missing Authorization vulnerability in Metagauss User Registration Forms RegistrationMagic allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects RegistrationMagic: from n/a through 5.2.3.0.
network
low complexity
metagauss CWE-862
7.5
2024-12-09 CVE-2023-49856 Missing Authorization vulnerability in Rednao Smart Forms
Missing Authorization vulnerability in RedNao Smart Forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Smart Forms: from n/a through 2.6.84.
network
low complexity
rednao CWE-862
8.8
2024-12-09 CVE-2023-51359 Missing Authorization vulnerability in Wpdeveloper Essential Blocks
Missing Authorization vulnerability in WPDeveloper Essential Blocks for Gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Blocks for Gutenberg: from n/a through 4.2.0.
network
low complexity
wpdeveloper CWE-862
8.8
2024-12-09 CVE-2023-51360 Missing Authorization vulnerability in Wpdeveloper Essential Blocks
Missing Authorization vulnerability in WPDeveloper Essential Blocks for Gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Blocks for Gutenberg: from n/a through 4.2.0.
network
low complexity
wpdeveloper CWE-862
8.8
2024-12-09 CVE-2024-53816 Missing Authorization vulnerability in Themeum Tutor LMS Elementor Addons
Missing Authorization vulnerability in Themeum Tutor LMS Elementor Addons.This issue affects Tutor LMS Elementor Addons: from n/a through 2.1.5.
network
low complexity
themeum CWE-862
8.8
2024-12-09 CVE-2024-12358 OS Command Injection vulnerability in Datax-Web Project Datax-Web 2.1.1
A vulnerability was found in WeiYe-Jing datax-web 2.1.1.
network
low complexity
datax-web-project CWE-78
8.8