Vulnerabilidades en ThimPress
107 resultadosCVE-2025-14798MEDIUMLearnPress – WordPress LMS Plugin <= 4.3.2.4 - Missing Authorization to Unauthenticated Sensitive User Information Disclosure via REST APIEPSS 0.2%CVE-2025-22739MEDIUMWordPress LearnPress plugin <= 4.2.7.5 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2025-13964MEDIUMLearnPress – WordPress LMS Plugin <= 4.3.2 - Missing Authentication to Unauthenticated Course ModificationEPSS 0.2%CVE-2025-66054HIGHWordPress LearnPress plugin <= 4.2.9.4 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2026-1787MEDIUMLearnPress Export Import <= 4.1.0 - Missing Authentication to Unauthenticated Migrated Course DeletionEPSS 0.2%CVE-2025-49992HIGHWordPress LearnPress Export Import plugin <= 4.0.9 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-39460MEDIUMWordPress Eduma theme <= 5.6.4 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2025-28977HIGHWordPress WP Pipes Plugin <= 1.4.3 - Cross Site Scripting (XSS) VulnerabilityEPSS 0.2%CVE-2025-14387MEDIUMLearnPress – WordPress LMS Plugin <= 4.3.1 - Authenticated (Subscriber+) Stored Cross-Site Scripting via get_profile_socialEPSS 0.2%CVE-2025-63013MEDIUMWordPress WP Hotel Booking plugin <= 2.2.7 - Sensitive Data Exposure vulnerabilityEPSS 0.2%CVE-2025-67573MEDIUMWordPress Sailing theme < 4.4.6 - Broken Access Control vulnerabilityEPSS 0.2%CVE-2023-40009MEDIUMWordPress WP Pipes Plugin <= 1.4.0 is vulnerable to Cross Site Request Forgery (CSRF)EPSS 0.2%CVE-2026-3226MEDIUMLearnPress <= 4.3.2.8 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Email Notification TriggeringEPSS 0.2%CVE-2026-48865HIGHWordPress LearnPress plugin <= 4.3.6 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-54721HIGHWordPress Resca theme <= 3.0.2 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2025-64194MEDIUMWordPress Eduma theme <= 5.7.6 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%CVE-2024-39641MEDIUMWordPress LearnPress plugin <= 4.2.6.8.2 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%CVE-2025-47664MEDIUMWordPress WP Pipes <= 1.4.2 - Server Side Request Forgery (SSRF) VulnerabilityEPSS 0.2%CVE-2025-67594MEDIUMWordPress Thim Elementor Kit plugin <= 1.3.3 - Insecure Direct Object References (IDOR) vulnerabilityEPSS 0.2%CVE-2025-63011MEDIUMWordPress WP Hotel Booking plugin <= 2.2.8 - Cross Site Scripting (XSS) vulnerabilityEPSS 0.2%