Verygoodplugins

Wp Fusion

4 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.21%
  • Veröffentlicht 07.09.2026 13:28:30
  • Zuletzt bearbeitet 08.09.2026 17:17:32

The WP Fusion (Pro) plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.47.13. This is due to insufficient authorization checks on the role parameter in the ThriveCart Auto Login handler's thrivecart() f...

  • EPSS 1.63%
  • Veröffentlicht 03.04.2024 12:15:12
  • Zuletzt bearbeitet 28.04.2026 13:16:44

Improper Control of Generation of Code ('Code Injection') vulnerability in Jack Arturo WP Fusion Lite wp-fusion-lite.This issue affects WP Fusion Lite: from n/a through <= 3.41.24.

  • EPSS 0.82%
  • Veröffentlicht 09.08.2021 13:15:07
  • Zuletzt bearbeitet 21.11.2024 06:10:54

The WP Fusion Lite WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the startdate parameter found in the ~/includes/admin/logging/class-log-table-list.php file which allows attackers to inject arbitrary web scripts, in versions up...

  • EPSS 0.45%
  • Veröffentlicht 09.08.2021 13:15:07
  • Zuletzt bearbeitet 21.11.2024 06:10:55

The WP Fusion Lite WordPress plugin is vulnerable to Cross-Site Request Forgery via the `show_logs_section` function found in the ~/includes/admin/logging/class-log-handler.php file which allows attackers to drop all logs for the plugin, in versions ...