Extension WordPress
Vulnérabilités Swiss Toolkit For WP
Cette page rassemble les failles publiées pour Swiss Toolkit For WP, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Swiss Toolkit For WP
4 fiches
Swiss Toolkit For WP <= 1.4.6 – Authenticated (Author+) Arbitrary File Upload via upload_extension_files()
The Swiss Toolkit For WP plugin for WordPress is vulnerable to arbitrary file upload due to a flawed file type validation bypass in the `upload_extension_files()` function in all versions up to, and including, 1.4.6. The `upload_extension_files()` function hooks…
*-1.4.6
Non indiqué
10/07/2026
Swiss Toolkit For WP <= 1.4.1 – Missing Authorization
The Swiss Toolkit For WP plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 1.4.1. This makes it possible for authenticated attackers, with…
*-1.4.1
Non indiqué
31/03/2025
Swiss Toolkit For WP <= 1.4.0 – Missing Authorization
The Swiss Toolkit For WP plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 1.4.0. This makes it possible for authenticated attackers, with…
*-1.4.0
1.4.1
31/03/2025
Swiss Toolkit For WP <= 1.0.7 – Authenticated (Contributor+) Authentication Bypass
The Swiss Toolkit For WP plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 1.0.7. This is due to the plugin storing custom data in post metadata without an underscore prefix. This makes…
*-1.0.7
1.0.8
28/05/2024
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.