Description
Several WordPress plugins developed by Cool Plugins are vulnerable to arbitrary plugin installation and activation that can lead to remote code execution by authenticated attackers with minimal permissions, such as a subscriber.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-52203 | Several WordPress plugins developed by Cool Plugins are vulnerable to arbitrary plugin installation and activation that can lead to remote code execution by authenticated attackers with minimal permissions, such as a subscriber. |
References
History
Wed, 08 Apr 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cool Plugins (Various Versions) - Arbitrary Plugin Installation and Activation |
Mon, 23 Dec 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Coolplugins
Subscribe
Cool Timeline
Subscribe
Cryptocurrency Widgets
Subscribe
Cryptocurrency Widgets For Elementor
Subscribe
Event Single Page Builder For The Event Calendar
Subscribe
Events-notification-bar-addon
Subscribe
Events Search For The Events Calendar
Subscribe
Events Shortcodes For The Events Calendar
Subscribe
Events Widgets For Elementor And The Events Calendar
Subscribe
The Events Calendar Countdown Addon
Subscribe
Cryptocurrency Payment \& Donation Box Plugins
Subscribe
Cryptocurrency Payment \& Donation Box
Subscribe
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-04-08T17:33:40.142Z
Reserved: 2023-06-06T13:39:44.796Z
Link: CVE-2022-4950
Updated: 2024-08-03T01:55:46.079Z
Status : Modified
Published: 2023-06-07T02:15:15.813
Modified: 2026-04-08T19:17:58.790
Link: CVE-2022-4950
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD