|
2771
|
7.5 |
HIGH
Network
|
-
|
-
|
Vulnerabilidad de Autorización Faltante en PublishPress PublishPress Authors publishpress-authors permite Explotar Niveles de Seguridad de Control de Acceso Configurados Incorrectamente. Este problem…
|
CWE-862
Missing Authorization
|
CVE-2026-25309
|
2026-04-25 01:32 |
2026-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2772
|
7.5 |
HIGH
Network
|
-
|
-
|
Missing Authorization vulnerability in tychesoftwares Print Invoice & Delivery Notes for WooCommerce woocommerce-delivery-notes allows Exploiting Incorrectly Configured Access Control Security Levels…
|
CWE-862
Missing Authorization
|
CVE-2026-25317
|
2026-04-25 01:32 |
2026-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2773
|
7.5 |
HIGH
Network
|
-
|
-
|
Vulnerabilidad de autorización faltante en tychesoftwares Print Invoice & Delivery Notes for WooCommerce woocommerce-delivery-notes permite la explotación de niveles de seguridad de control de ac…
|
CWE-862
Missing Authorization
|
CVE-2026-25317
|
2026-04-25 01:32 |
2026-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2774
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Missing Authorization vulnerability in Rustaurius Five Star Restaurant Reservations restaurant-reservations allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects …
|
CWE-862
Missing Authorization
|
CVE-2026-25327
|
2026-04-25 01:32 |
2026-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2775
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Vulnerabilidad de Autorización Faltante en Rustaurius Five Star Restaurant Reservations restaurant-reservations permite Explotar Niveles de Seguridad de Control de Acceso Incorrectamente Configurados…
|
CWE-862
Missing Authorization
|
CVE-2026-25327
|
2026-04-25 01:32 |
2026-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2776
|
6.8 |
MEDIUM
Network
|
-
|
-
|
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in add-ons.org Product File Upload for WooCommerce products-file-upload-for-woocommerce allows Path Traver…
|
CWE-22
Path Traversal
|
CVE-2026-25328
|
2026-04-25 01:32 |
2026-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2777
|
6.8 |
MEDIUM
Network
|
-
|
-
|
Limitación incorrecta de un nombre de ruta a un directorio restringido ('Salto de ruta') vulnerabilidad en add-ons.org Product File Upload for WooCommerce products-file-upload-for-woocommerce permite…
|
CWE-22
Path Traversal
|
CVE-2026-25328
|
2026-04-25 01:32 |
2026-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2778
|
8.1 |
HIGH
Network
|
-
|
-
|
Incorrect Privilege Assignment vulnerability in wordpresschef Salon Booking System Pro salon-booking-plugin-pro allows Privilege Escalation.This issue affects Salon Booking System Pro: from n/a throu…
|
CWE-266
Incorrect Privilege Assignment
|
CVE-2026-25334
|
2026-04-25 01:32 |
2026-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2779
|
8.1 |
HIGH
Network
|
-
|
-
|
La vulnerabilidad de Asignación Incorrecta de Privilegios en wordpresschef Salon Booking System Pro salon-booking-plugin-pro permite la escalada de privilegios. Este problema afecta a Salon Booking S…
|
CWE-266
Incorrect Privilege Assignment
|
CVE-2026-25334
|
2026-04-25 01:32 |
2026-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2780
|
6.5 |
MEDIUM
Network
|
-
|
-
|
Insertion of Sensitive Information Into Sent Data vulnerability in Syed Balkhi Contact Form by WPForms wpforms-lite allows Retrieve Embedded Sensitive Data.This issue affects Contact Form by WPForms:…
|
CWE-201
Insertion of Sensitive Information Into Sent Data
|
CVE-2026-25339
|
2026-04-25 01:32 |
2026-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|