CVE-2026-65476
- EPSS 0.21%
- Veröffentlicht 23.07.2026 11:18:49
- Zuletzt bearbeitet 23.07.2026 14:17:51
Unauthenticated Broken Access Control in Civi <= 2.2.4 versions.
CVE-2024-13772
- EPSS 0.27%
- Veröffentlicht 14.03.2025 11:15:53
- Zuletzt bearbeitet 17.06.2025 18:15:24
The Civi - Job Board & Freelance Marketplace WordPress Theme plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 2.1.6.1. This is due to a lack of password randomization and user validation through the fb...
CVE-2024-13773
- EPSS 0.26%
- Veröffentlicht 14.03.2025 11:15:53
- Zuletzt bearbeitet 27.03.2025 01:07:51
The Civi - Job Board & Freelance Marketplace WordPress Theme plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.1.4 via hard-coded credentials. This makes it possible for unauthenticated attac...
CVE-2024-13771
- EPSS 0.42%
- Veröffentlicht 14.03.2025 11:15:52
- Zuletzt bearbeitet 08.04.2026 18:20:16
The Civi - Job Board & Freelance Marketplace WordPress Theme plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 2.1.4. This is due to a lack of user validation before changing a password. This makes it p...