Abdi Pranata

6
All Time Ranking
266
All Time Discoveries

Showing 21-40 of 266 Vulnerabilities

Title CVE ID CVSS Vector Date
GG Woo Feed for WooCommerce Shopping Feed <= 1.2.6 - Missing Authorization CVE-2024-32519 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N April 15, 2024
Custom Order Statuses for WooCommerce <= 1.5.2 - Missing Authorization CVE-2024-32524 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N April 15, 2024
Custom Thank You Page Customize For WooCommerce by Binary Carpenter <= 1.4.13 - Missing Authorization CVE-2024-32517 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N April 15, 2024
Podlove Podcast Publisher <= 4.1.0 - Missing Authorization CVE-2024-32143 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N April 12, 2024
Pardot <= 2.1.0 - Missing Authorization CVE-2024-32148 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N April 12, 2024
Aspose.Words Exporter <= 6.3.1 - Missing Authorization CVE-2024-32146 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N April 12, 2024
Generate Child Theme <= 2.0 - Cross-Site Request Forgery via process_create_form() CVE-2024-31279 4.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N April 5, 2024
Tracking Code Manager <= 2.1.0 - Missing Authorization via change_order() CVE-2024-31347 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N April 5, 2024
AWP Classifieds <= 4.3.1 - Missing Authorization CVE-2024-31350 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N April 5, 2024
Announcer – Notification & message bars <= 6.0 - Missing Authorization CVE-2024-31261 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N April 5, 2024
WPC Badge Management for WooCommerce <= 2.4.0 - Missing Authorization CVE-2024-30537 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N March 29, 2024
Events Manager <= 6.4.6.4 - Missing Authorization CVE-2024-30515 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N March 28, 2024
WP SendFox <= 1.3.0 - Missing Authorization CVE-2024-27970 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N March 13, 2024
Product Catalog Enquiry for WooCommerce by MultiVendorX <= 5.0.5 - Cross-Site Request Forgery via REST API CVE-2024-25929 4.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N February 20, 2024
Peach Payments Gateway <= 3.1.9 - Missing Authorization via peach_core_version_rollback() CVE-2024-25922 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N February 14, 2024
WooCommerce Conversion Tracking <= 2.0.11 - Missing Authorization via wcct_install_happy_addons CVE-2024-24711 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N January 31, 2024
Shareaholic <= 9.7.11 - Missing Authorization via accept_terms_of_service CVE-2024-24709 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N January 31, 2024
PopupAlly <= 2.1.0 - Cross-Site Request Forgery via optin_submit_callback CVE-2024-23520 4.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N January 30, 2024
ACF Photo Gallery Field <= 2.6 - Missing Authorization in apgf_update_donation CVE-2024-23518 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N January 30, 2024
Slider by Supsystic <= 1.8.6 - Missing Authorization CVE-2024-22303 4.3 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N January 17, 2024

Share this researcher's vulnerability discoveries

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation