Extension WordPress

Vulnérabilités WP Fast Total Search – The Power of Indexed Search

Cette page rassemble les failles publiées pour WP Fast Total Search – The Power of Indexed Search, leurs plages de versions affectées et les correctifs signalés dans la base locale.

9Vulnérabilités
0Critiques
9Avec correctif
7,5CVSS maximal

Historique de sécurité

CVE et vulnérabilités de WP Fast Total Search – The Power of Indexed Search

9 fiches

CVE-2026-57683 Élevée · 7,5
WP Fast Total Search – The Power of Indexed Search

WP Fast Total Search – The Power of Indexed Search <= 1.80.280 – Unauthenticated SQL Injection

The WP Fast Total Search – The Power of Indexed Search plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.80.280 due to insufficient escaping on the user supplied parameter and lack of…

Versions affectées

*-1.80.280

Correctif

1.81.282

Publication

29/06/2026

CVE-2024-39663 Élevée · 7,2
WP Fast Total Search – The Power of Indexed Search

WP Fast Total Search <= 1.68.232 – Unauthenticated Stored Cross-Site Scripting

The WP Fast Total Search – The Power of Indexed Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 1.68.232 due to insufficient input sanitization and output escaping. This makes…

Versions affectées

*-1.68.232

Correctif

1.69.234

Publication

01/08/2024

CVE-2024-38778 Moyenne · 4,3
WP Fast Total Search – The Power of Indexed Search

WP Fast Total Search <= 1.69.234 – Cross-Site Request Forgery

The WP Fast Total Search plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.69.234. This is due to missing or incorrect nonce validation on the ajax_get_qlog_data and ajax_se_style_reset functions. This makes…

Versions affectées

*-1.69.234

Correctif

1.70.236

Publication

19/07/2024

CVE-2024-38714 Moyenne · 4,3
WP Fast Total Search – The Power of Indexed Search

WP Fast Total Search <= 1.68.232 – Missing Authorization

The WP Fast Total Search plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on several functions like ajax_set_pause, ajax_se_style_preview, and WPFTS_jxResponse in versions up to, and including, 1.68.232. This makes…

Versions affectées

*-1.68.232

Correctif

1.69.234

Publication

11/07/2024

CVE-2024-29799 Moyenne · 6,4
WP Fast Total Search – The Power of Indexed Search

WP Fast Total Search <= 1.59.211 – Authenticated (Contributor+) Stored Cross-Site Scripting via WPFTS Live Search Widget

The WP Fast Total Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the WPFTS Live Search widget in versions up to, and including, 1.59.211 due to insufficient input sanitization and output escaping. This makes it…

Versions affectées

*-1.59.211

Correctif

1.60.213

Publication

25/03/2024

WP Commander

Rechercher dans toute la base WordPress

Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.

Ouvrir le tableau des vulnérabilités