Lucene search

K

Para Security Vulnerabilities

cve
cve

CVE-2023-49853

Cross-Site Request Forgery (CSRF) vulnerability in PayTR Ödeme ve Elektronik Para Kuruluşu A.Ş. PayTR Taksit Tablosu – WooCommerce.This issue affects PayTR Taksit Tablosu – WooCommerce: from n/a through...

8.8CVSS

8.6AI Score

0.001EPSS

2023-12-18 03:15 PM
33
cve
cve

CVE-2023-3525

The Getnet Argentina para Woocommerce plugin for WordPress is vulnerable to authorization bypass due to missing validation on the 'webhook' function in versions up to, and including, 0.0.4. This makes it possible for unauthenticated attackers to set their payment status to 'APPROVED' without...

7.5CVSS

7.5AI Score

0.001EPSS

2023-07-12 05:15 AM
10
cve
cve

CVE-2022-0814

The Ubigeo de Perú para Woocommerce WordPress plugin before 3.6.4 does not properly sanitise and escape some parameters before using them in SQL statements via various AJAX actions, some of which are available to unauthenticated users, leading to SQL...

9.8CVSS

9.6AI Score

0.04EPSS

2022-05-09 05:15 PM
53
2
cve
cve

CVE-2014-10397

The Antioch theme through 2014-09-07 for WordPress allows arbitrary file downloads via the file parameter to...

7.5CVSS

7.6AI Score

0.011EPSS

2019-09-20 08:15 PM
295