Vulnerabilities in Brainstorm Force
66 resultsCVE-2025-27007CRITICALWordPress SureTriggers <= 1.0.82 - Privilege Escalation VulnerabilityEPSS 50.2%CVE-2024-3240HIGHConvertPlug <= 3.5.25 - Authenticated (Contributor+) PHP Object InjectionEPSS 0.8%CVE-2023-49830CRITICALWordPress Astra Pro Plugin <= 4.3.1 is vulnerable to Remote Code Execution (RCE)EPSS 0.7%CVE-2023-23834MEDIUMWordPress Spectra – WordPress Gutenberg Blocks plugin <= 2.3.0 - Broken Access Control + CSRF on Activate_Plugin vulnerabilityEPSS 0.6%CVE-2024-4838HIGHConvertPlus <= 3.5.26 - Authenticated (Contributor+) PHP Object InjectionEPSS 0.6%CVE-2024-3828HIGHSpectra Pro <= 1.1.5 - Authenticated (Author+) Privilege EscalationEPSS 0.6%CVE-2023-51401MEDIUMWordPress Ultimate Addons for Beaver Builder Premium plugin <= 1.35.13 - Limited Arbitrary File Download vulnerabilityEPSS 0.6%CVE-2023-49833MEDIUMWordPress Spectra Plugin <= 2.7.9 is vulnerable to Cross Site Scripting (XSS)EPSS 0.6%CVE-2023-51398HIGHWordPress Ultimate Addons for Beaver Builder Premium plugin <= 1.35.14 - Privilege Escalation vulnerabilityEPSS 0.5%CVE-2023-50890HIGHWordPress Ultimate Addons for Elementor plugin <= 1.36.20 - Privilege Escalation vulnerabilityEPSS 0.5%CVE-2023-23825LOWWordPress Spectra – WordPress Gutenberg Blocks plugin <= 2.3.0 - Broken Access Control + CSRF on Import_WPforms vulnerabilityEPSS 0.5%CVE-2024-12434MEDIUMSureMembers <= 1.10.6 - Sensitive Information ExposureEPSS 0.5%CVE-2023-46205HIGHWordPress Ultimate Addons for WPBakery Page Builder plugin <= 3.19.14 - Local File Inclusion vulnerabilityEPSS 0.5%CVE-2024-37455HIGHWordPress Ultimate Addons for elementor plugin <= 1.36.31 - Privilege Escalation vulnerabilityEPSS 0.5%CVE-2023-36684HIGHWordPress Convert Pro plugin <= 1.7.5 - Broken Access Control vulnerabilityEPSS 0.5%CVE-2023-36676MEDIUMWordPress Spectra plugin <= 2.6.6 - Broken Access Control vulnerabilityEPSS 0.5%CVE-2024-13800HIGHPopup Plugin For WordPress - ConvertPlus <= 3.5.30 - Missing Authorization to Authenticated (Subscriber+) Limited Options UpdateEPSS 0.4%CVE-2024-37517MEDIUMWordPress Spectra plugin <= 2.13.7 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2023-44148MEDIUMWordPress Astra Bulk Edit plugin <= 1.2.7 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2026-49781CRITICALWordPress OttoKit plugin <= 1.1.27 - PHP Object Injection vulnerabilityEPSS 0.4%