Vulnerabilities > Uxper > Civi

DATE CVE VULNERABILITY TITLE RISK
2025-03-14 CVE-2024-13771 Authentication Bypass Using an Alternate Path or Channel vulnerability in Uxper Civi
The Civi - Job Board & Freelance Marketplace WordPress Theme plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 2.1.4.
network
high complexity
uxper CWE-288
5.9
2025-03-14 CVE-2024-13772 Authentication Bypass Using an Alternate Path or Channel vulnerability in Uxper Civi
The Civi - Job Board & Freelance Marketplace WordPress Theme plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 2.1.4.
network
high complexity
uxper CWE-288
5.9
2025-03-14 CVE-2024-13773 Use of Hard-coded Cryptographic Key vulnerability in Uxper Civi
The Civi - Job Board & Freelance Marketplace WordPress Theme plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.1.4 via hard-coded credentials.
network
low complexity
uxper CWE-321
7.5