Vulnerabilidades em codepeople

73 resultados
CVE-2014-125091MEDIUMcodepeople cp-polls Plugin cp-admin-int-message-list.inc.php sql injectionEPSS 0.8%CVE-2023-23895MEDIUMWordPress WP Time Slots Booking Form plugin <= 1.1.82 - Broken Access Control vulnerabilityEPSS 0.7%CVE-2022-4035HIGHAppointment Hour Booking <= 1.3.72 - Unauthenticated iFrame Injection via Appointment FormEPSS 0.7%CVE-2022-3427HIGHCorner Ad <= 1.0.56 - Cross-Site Request ForgeryEPSS 0.6%CVE-2022-4034MEDIUMAppointment Hour Booking <= 1.3.72 - CSV InjectionEPSS 0.6%CVE-2024-2020HIGHCalculated Fields Form Professional <= 5.1.56 - Unauthenticated Stored Cross-Site ScriptingEPSS 0.6%CVE-2024-12601MEDIUMCalculated Fields Form <= 5.2.63 - Denial of ServiceEPSS 0.5%CVE-2023-25037MEDIUMWordPress Booking Calendar Contact Form plugin <= 1.2.34 - Broken Access Control vulnerabilityEPSS 0.5%CVE-2024-36082MEDIUMSQL injection vulnerability in Music Store - WordPress eCommerce versions prior to 1.1.14 allows a remote authenticated attacker with an admEPSS 0.5%CVE-2023-25039MEDIUMWordPress Google Maps CP plugin <= 1.0.43 - Missing Authorization Leading To Feedback Submission VulnerabilityEPSS 0.5%CVE-2022-43482MEDIUMWordPress Appointment Booking Calendar plugin <= 1.3.69 - Missing Authorization vulnerabilityEPSS 0.5%CVE-2022-41692MEDIUMWordPress Appointment Hour Booking plugin <= 1.3.71 - Missing Authorization vulnerabilityEPSS 0.5%CVE-2024-0963MEDIUMCalculated Fields Form <= 1.2.52 - Authenticated (Contributor+) Stored Cross-Site ScriptingEPSS 0.5%CVE-2024-31302MEDIUMWordPress Contact Form Email plugin <= 1.3.44 - Sensitive Data Exposure vulnerabilityEPSS 0.5%CVE-2022-41790MEDIUMWordPress WP Time Slots Booking Form Plugin <= 1.1.76 is vulnerable to Broken Access ControlEPSS 0.5%CVE-2023-23814LOWWordPress Calendar Event Multi View plugin <= 1.4.13 - Broken Access Control vulnerabilityEPSS 0.4%CVE-2025-24672HIGHWordPress Form Builder CP Plugin <= 1.2.41 - SQL Injection vulnerabilityEPSS 0.4%CVE-2022-4036MEDIUMAppointment Hour Booking <= 1.3.72 - CAPTCHA BypassEPSS 0.4%CVE-2024-13680MEDIUMForm Builder CP <= 1.2.41 - Authenticated (Contributor+) SQL InjectionEPSS 0.4%CVE-2024-29759HIGHWordPress Calculated Fields Form plugin <= 1.2.54 - Reflected Cross Site Scripting (XSS) vulnerabilityEPSS 0.4%