Falhas do tipo CWE-98

1.231 resultados
CVE-2024-41925CRITICALOptigo Networks ONS-S8 Spectra Aggregation Switch PHP Remote File InclusionEPSS 0.7%CVE-2024-11429HIGHFree Responsive Testimonials, Social Proof Reviews, and Customer Reviews – Stars Testimonials <= 3.3.3 - Authenticated (Contributor+) Local File InclusionEPSS 0.7%CVE-2025-49894HIGHWordPress Nuss Theme <= 1.3.3 - Local File Inclusion VulnerabilityEPSS 0.7%CVE-2025-22145MEDIUMCarbon has an arbitrary file include via unvalidated input passed to Carbon::setLocaleEPSS 0.7%CVE-2025-26957HIGHWordPress Affiliate Coupons plugin <= 1.7.3 - Local File Inclusion vulnerabilityEPSS 0.7%CVE-2025-26932HIGHWordPress WPBot plugin <= 6.3.5 - Local File Inclusion vulnerabilityEPSS 0.7%CVE-2024-52499HIGHWordPress Pricing table addon for elementor plugin <= 1.0.0 - Local File Inclusion vulnerabilityEPSS 0.7%CVE-2024-52497HIGHWordPress Shopready plugin <= 3.6 - Local File Inclusion vulnerabilityEPSS 0.7%CVE-2025-47439HIGHWordPress Download Monitor plugin <= 5.0.22 - Local File Inclusion VulnerabilityEPSS 0.7%CVE-2024-3551CRITICALPenci Soledad Data Migrator <= 1.3.0 - Unauthenticated Local File InclusionEPSS 0.7%CVE-2016-20078MEDIUMWordPress IMDb Profile Widget 1.0.8 Local File Inclusion via pic.phpEPSS 0.7%CVE-2024-5345HIGHResponsive Owl Carousel for Elementor <= 1.2.0 - Local File InclusionEPSS 0.7%CVE-2022-44786HIGHAn issue was discovered in Appalti & Contratti 9.12.2. The target web applications allow Local File Inclusion in any page relying on the hreEPSS 0.7%CVE-2025-30870HIGHWordPress WP Travel Engine plugin <= 6.3.5 - Local File Inclusion vulnerabilityEPSS 0.7%CVE-2025-26964HIGHWordPress Eventin plugin <= 4.0.20 - Local File Inclusion vulnerabilityEPSS 0.7%CVE-2024-12811HIGHTraveler <= 3.1.9 - Authenticated (Contributor+) Local File Inclusion via ShortcodeEPSS 0.7%CVE-2024-13353HIGHResponsive Addons for Elementor – Free Elementor Addons Plugin and Elementor Templates <= 1.6.4 - Authenticated (Contributor+) Local File InclusionEPSS 0.7%CVE-2026-1257HIGHAdministrative Shortcodes <= 0.3.4 - Authenticated (Contributor+) Local File Inclusion via 'slug' Shortcode AttributeEPSS 0.7%CVE-2025-22508HIGHWordPress FAT Event Lite plugin <= 1.1 - Unauthenticated Non-Arbitrary Local File Inclusion vulnerabilityEPSS 0.7%CVE-2025-30890HIGHWordPress Login Widget for Ultimate Member plugin <= 1.1.2 - Local File Inclusion vulnerabilityEPSS 0.7%