Extension WordPress
Vulnérabilités Client Portal – Private user pages and login
Cette page rassemble les failles publiées pour Client Portal – Private user pages and login, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Client Portal – Private user pages and login
3 fiches
Client Portal – Private user pages and login <= 1.2.1 – Missing Authorization
The Client Portal – Private user pages and login plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 1.2.1. This makes it possible…
*-1.2.1
1.2.2
16/01/2026
Client Portal – Private user pages and login <= 1.1.8 – Cross-Site Request Forgery via cp_create_private_pages_for_all_users function
The Client Portal – Private user pages and login plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.8. This is due to missing or incorrect nonce validation on the 'cp_create_private_pages_for_all_users' function.…
*-1.1.8
1.1.9
22/02/2023
Client Portal <= 1.1.8 – Cross-Site Request Forgery via cp_create_private_pages_for_all_users
The Client Portal plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1.8. This is due to missing nonce validation on the cp_create_private_pages_for_all_users function. This makes it possible for unauthenticated attackers to…
*-1.1.8
1.1.9
21/02/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.