Extension WordPress
Vulnérabilités Kadence Central – Site Management, Backups, Security, and Reporting
Cette page rassemble les failles publiées pour Kadence Central – Site Management, Backups, Security, and Reporting, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Kadence Central – Site Management, Backups, Security, and Reporting
4 fiches
Solid Central – Site Management, Backups, Security, and Reporting <= 3.2.8 – Missing Authorization
The Solid Central – Site Management, Backups, Security, and Reporting plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 3.2.8. This makes it…
*-3.2.8
3.2.9
11/01/2026
Solid Central <= 3.0.0 – Stored Cross-Site Scripting via packages
The Solid Central – Site Management, Backups, Security, and Reporting plugin for WordPress is vulnerable to Stored Cross-Site Scripting via via malicious package names in all versions up to and including 3.0.0 due to insufficient output escaping. This…
[*, 3.0.1)
3.0.1
07/11/2023
iThemes Sync <= 2.1.13 – Cross-Site Request Forgery and Missing Authorization via 'hide_authenticate_notice'
The iThemes Sync plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.1.13. This is due to missing or incorrect nonce validation on the hide_authenticate_notice function. This makes it possible for unauthenticated…
[*, 2.1.14)
2.1.14
25/08/2023
iThemes Sync <= 2.0.17 – Authentication Bypass
The iThemes Sync plugin for WordPress is vulnerable to authentication bypass due to a missing validation on the secure key in versions up to, and including, 2.0.17. This makes it possible for unauthenticated attackers to add their own…
[*, 2.0.18)
2.0.18
09/10/2019
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.