Loading HuntDB...

wpchill

29 Products 34 CVEs

CVE Severity Distribution (All Time)

Critical
2
High
4
Medium
27
Low
1

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 10 CVEs

Recent CVEs

View all
CVE-2024-12853 HIGH 8 months ago

The Modula Image Gallery plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the zip upload functiona…

CVE-2024-12711 MEDIUM 8 months ago

The RSVP and Event Management plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several AJAX functions l…

CVE-2024-11282 MEDIUM 8 months ago

The Passster – Password Protect Pages and Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and inc…

CVE-2024-11106 MEDIUM 9 months ago

The Simple Restrict plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.2.7 via the WordPres…

CVE-2024-49256 MEDIUM 10 months, 1 week ago

Incorrect Authorization vulnerability in WPChill Htaccess File Editor allows Accessing Functionality Not Properly Constrained by ACLs.This issue affe…

CVE-2024-47362 MEDIUM 10 months, 1 week ago

Missing Authorization vulnerability in WPChill Strong Testimonials allows Exploiting Incorrectly Configured Access Control Security Levels.This issue…

CVE-2024-10399 MEDIUM 10 months, 2 weeks ago

The Download Monitor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the ajax_search_use…

CVE-2024-10092 MEDIUM 10 months, 2 weeks ago

The Download Monitor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the ajax_handle_api…

CVE-2022-4972 HIGH 10 months, 4 weeks ago

The Download Monitor plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on several REST-API routes related …

CVE-2024-8552 MEDIUM 11 months, 2 weeks ago

The Download Monitor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the enable_shop() f…