Extension WordPress
Vulnérabilités Responsive Filterable Portfolio Gallery – Media Grid & Video Portfolio
Cette page rassemble les failles publiées pour Responsive Filterable Portfolio Gallery – Media Grid & Video Portfolio, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Responsive Filterable Portfolio Gallery – Media Grid & Video Portfolio
4 fiches
Responsive Filterable Portfolio <= 1.0.24 – Authenticated (Admin+) Arbitrary File Upload
The Responsive Filterable Portfolio plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation via the HdnMediaSelection_image field in all versions up to, and including, 1.0.24. This makes it possible for authenticated attackers,…
*-1.0.24
1.0.25
09/09/2025
Responsive Filterable Portfolio <=1.0.8 – Authenticated (Admin+) SQL Injection
The Responsive Filterable Portfolio plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, 1.0.8 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation…
*-1.0.8
1.0.9
12/12/2024
Responsive Filterable Portfolio <= 1.0.22 – Server-Side Request Forgery
The Responsive Filterable Portfolio plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.0.22. This makes it possible for authenticated attackers, with Administrator-level access and above, to make web requests to…
*-1.0.22
1.0.23
04/11/2024
Responsive Filterable Portfolio <= 1.0.19 – Reflected Cross-Site Scripting
The Responsive Filterable Portfolio plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the search_term parameter in versions up to, and including, 1.0.19 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated…
*-1.0.19
1.0.20
17/04/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.