Autore: Angelo Barbosa

CVE-2023-44150 | ProfilePress Paid Membership Plugin up to 4.13.2 on WordPress information disclosure

A vulnerability, which was classified as problematic, was found in ProfilePress Paid Membership Plugin up to 4.13.2 on WordPress. This affects an unknown part. The manipulation leads to information disclosure. This vulnerability is uniquely identified as CVE-2023-44150. It is possible to initiate the attack remotely. There is no exploit...

Per saperne di più

CVE-2023-40662 | Cookies and Content Security Policy Plugin up to 2.15 on WordPress information disclosure

A vulnerability, which was classified as problematic, has been found in Cookies and Content Security Policy Plugin up to 2.15 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to information disclosure. This vulnerability is handled as CVE-2023-40662. The attack may be launched remotely. There is no exploit...

Per saperne di più

CVE-2023-40600 | Exactly WWW EWWW Image Optimizer Plugin up to 7.2.0 on WordPress information disclosure

A vulnerability classified as problematic was found in Exactly WWW EWWW Image Optimizer Plugin up to 7.2.0 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to information disclosure. This vulnerability is known as CVE-2023-40600. The attack can only be initiated within the local network. There is no exploit...

Per saperne di più

CVE-2023-6360 | My Calendar Plugin up to 3.4.21 on WordPress /my-calendar/v1/events sql injection

A vulnerability classified as critical has been found in My Calendar Plugin up to 3.4.21 on WordPress. Affected is an unknown function of the file /my-calendar/v1/events. The manipulation of the argument to leads to sql injection. This vulnerability is traded as CVE-2023-6360. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più