CVE-2025-59005
- EPSS 0.04%
- Veröffentlicht 09.09.2025 16:25:21
- Zuletzt bearbeitet 11.09.2025 17:14:25
Missing Authorization vulnerability in frenify Categorify allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Categorify: from n/a through 1.0.7.5.
CVE-2024-0385
- EPSS 1.86%
- Veröffentlicht 13.03.2024 16:15:11
- Zuletzt bearbeitet 08.01.2025 18:32:52
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxAddCategory function in all versions up to, and including, 1.0.7.4. This makes it possible for authenticated...
CVE-2024-1907
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:09
- Zuletzt bearbeitet 07.01.2025 14:34:27
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation on the categorifyAjaxDeleteCategory function. This makes it possible f...
CVE-2024-1909
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:09
- Zuletzt bearbeitet 07.01.2025 14:34:08
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation on the categorifyAjaxRenameCategory function. This makes it possible f...
CVE-2024-1910
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:09
- Zuletzt bearbeitet 07.01.2025 14:33:31
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation on the categorifyAjaxClearCategory function. This makes it possible fo...
CVE-2024-1912
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:09
- Zuletzt bearbeitet 07.01.2025 14:24:01
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation on the categorifyAjaxUpdateFolderPosition function. This makes it poss...
CVE-2024-1649
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:08
- Zuletzt bearbeitet 07.01.2025 14:36:30
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxDeleteCategory function in all versions up to, and including, 1.0.7.4. This makes it possible for authentica...
CVE-2024-1650
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:08
- Zuletzt bearbeitet 07.01.2025 14:36:06
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxRenameCategory function in all versions up to, and including, 1.0.7.4. This makes it possible for authentica...
CVE-2024-1652
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:08
- Zuletzt bearbeitet 07.01.2025 14:35:51
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxClearCategory function in all versions up to, and including, 1.0.7.4. This makes it possible for authenticat...
CVE-2024-1653
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:08
- Zuletzt bearbeitet 07.01.2025 14:35:33
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxUpdateFolderPosition in all versions up to, and including, 1.0.7.4. This makes it possible for authenticated...