Search Results (10543 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2023-25060 1 Wp Onlinesupport Essential Plugin 1 Album And Image Gallery Plus Lightbox 2026-04-23 5.3 Medium
Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Album and Image Gallery plus Lightbox album-and-image-gallery-plus-lightbox allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Album and Image Gallery plus Lightbox: from n/a through <= 1.6.2.
CVE-2023-25048 1 Fantastic Plugins 1 Fantastic Content Protector Free 2026-04-23 5.3 Medium
Missing Authorization vulnerability in Fantastic Plugins Fantastic Content Protector Free fantastic-content-protector-free allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Fantastic Content Protector Free: from n/a through <= 2.6.
CVE-2023-25037 2 Codepeople, Wordpress 2 Booking Calendar Contact Form, Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in codepeople Booking Calendar Contact Form booking-calendar-contact-form allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booking Calendar Contact Form: from n/a through <= 1.2.34.
CVE-2023-25035 1 Fullworksplugins 1 Quick Contact Form 2026-04-23 6.5 Medium
Missing Authorization vulnerability in Saad Iqbal Quick Contact Form quick-contact-form allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Quick Contact Form: from n/a through <= 8.0.3.1.
CVE-2023-25026 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Otávio Augusto PayPal Brasil para WooCommerce paypal-brasil-para-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PayPal Brasil para WooCommerce: from n/a through <= 1.4.2.
CVE-2023-24407 1 Wpdevart 1 Booking Calendar 2026-04-23 5 Medium
Missing Authorization vulnerability in wpdevart Booking calendar, Appointment Booking System booking-calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Booking calendar, Appointment Booking System: from n/a through <= 3.2.3.
CVE-2023-24375 2 Miniorange, Wordpress 2 Wordpress Social Login And Register (discord, Google, Twitter, Linkedin), Wordpress 2026-04-23 3.5 Low
Missing Authorization vulnerability in miniOrange WordPress Social Login and Register miniorange-login-openid allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WordPress Social Login and Register: from n/a through <= 7.5.14.
CVE-2023-23986 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Noah Hearle Reviews and Rating – Google My Business g-business-reviews-rating allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Reviews and Rating – Google My Business: from n/a through <= 4.14.
CVE-2023-23975 1 Fullworksplugins 1 Quick Event Manager 2026-04-23 5.3 Medium
Missing Authorization vulnerability in brightvesseldev Quick Event Manager quick-event-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Quick Event Manager: from n/a through <= 9.7.4.
CVE-2023-23895 1 Codepeople 1 Wp Time Slots Booking Form 2026-04-23 4.7 Medium
Missing Authorization vulnerability in codepeople WP Time Slots Booking Form wp-time-slots-booking-form allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Time Slots Booking Form: from n/a through <= 1.1.82.
CVE-2023-23893 1 Ibenic 1 Simple Giveaways 2026-04-23 5.3 Medium
Missing Authorization vulnerability in Igor Benic Simple Giveaways giveasap allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Simple Giveaways: from n/a through <= 2.48.0.
CVE-2023-23887 1 Ibenic 1 Simple Giveaways 2026-04-23 5.3 Medium
Missing Authorization vulnerability in Shahjada Easy Google Analytics for WordPress easy-google-analytics-for-wordpress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Easy Google Analytics for WordPress: from n/a through <= 1.6.0.
CVE-2023-23886 2 Mg12, Wordpress 2 Wp-recentcomments, Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in mg12 WP-RecentComments wp-recentcomments allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP-RecentComments: from n/a through <= 2.2.7.
CVE-2023-23868 2026-04-23 5.4 Medium
Missing Authorization vulnerability in WPFactory Cost of Goods for WooCommerce cost-of-goods-for-woocommerce allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cost of Goods for WooCommerce: from n/a through <= 2.8.6.
CVE-2023-23834 1 Brainstormforce 1 Spectra 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Brainstorm Force Spectra ultimate-addons-for-gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Spectra: from n/a through <= 2.3.0.
CVE-2023-23825 1 Brainstormforce 1 Spectra 2026-04-23 3.1 Low
Missing Authorization vulnerability in Brainstorm Force Spectra ultimate-addons-for-gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Spectra: from n/a through <= 2.3.0.
CVE-2023-23823 2026-04-23 4.3 Medium
Missing Authorization vulnerability in cl272 Enhanced Text Widget enhanced-text-widget allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Enhanced Text Widget: from n/a through <= 1.5.8.
CVE-2023-23814 2026-04-23 3.8 Low
Missing Authorization vulnerability in codepeople CP Multi View Event Calendar cp-multi-view-calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects CP Multi View Event Calendar : from n/a through <= 1.4.13.
CVE-2023-23729 2 Brainstormforce, Wordpress 2 Spectra, Wordpress 2026-04-23 5.4 Medium
Missing Authorization vulnerability in Brainstorm Force Spectra ultimate-addons-for-gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Spectra: from n/a through <= 2.3.0.
CVE-2023-23725 1 Wordpress 1 Wordpress 2026-04-23 4.3 Medium
Missing Authorization vulnerability in Chris Baldelomar Shortcodes wc-shortcodes allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Shortcodes: from n/a through <= 3.46.