CVE-2025-59005
- EPSS 0.03%
- Veröffentlicht 09.09.2025 16:25:21
- Zuletzt bearbeitet 15.04.2026 00:35:42
Missing Authorization vulnerability in frenify Categorify categorify allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Categorify: from n/a through <= 1.0.7.5.
CVE-2024-0385
- EPSS 1.86%
- Veröffentlicht 13.03.2024 16:15:11
- Zuletzt bearbeitet 08.04.2026 17:17:22
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxAddCategory function in all versions up to, and including, 1.0.7.4. This makes it possible for authenticated...
CVE-2024-1907
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:09
- Zuletzt bearbeitet 08.04.2026 17:18:27
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation on the categorifyAjaxDeleteCategory function. This makes it possible f...
CVE-2024-1909
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:09
- Zuletzt bearbeitet 08.04.2026 18:20:53
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation on the categorifyAjaxRenameCategory function. This makes it possible f...
CVE-2024-1910
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:09
- Zuletzt bearbeitet 08.04.2026 19:20:54
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation on the categorifyAjaxClearCategory function. This makes it possible fo...
CVE-2024-1912
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:09
- Zuletzt bearbeitet 08.04.2026 18:20:53
The Categorify plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.7.4. This is due to missing or incorrect nonce validation on the categorifyAjaxUpdateFolderPosition function. This makes it poss...
CVE-2024-1649
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:08
- Zuletzt bearbeitet 08.04.2026 19:20:48
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxDeleteCategory function in all versions up to, and including, 1.0.7.4. This makes it possible for authentica...
CVE-2024-1650
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:08
- Zuletzt bearbeitet 08.04.2026 19:20:49
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxRenameCategory function in all versions up to, and including, 1.0.7.4. This makes it possible for authentica...
CVE-2024-1652
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:08
- Zuletzt bearbeitet 08.04.2026 19:20:49
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxClearCategory function in all versions up to, and including, 1.0.7.4. This makes it possible for authenticat...
CVE-2024-1653
- EPSS 0.1%
- Veröffentlicht 27.02.2024 11:15:08
- Zuletzt bearbeitet 08.04.2026 18:20:45
The Categorify plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the categorifyAjaxUpdateFolderPosition in all versions up to, and including, 1.0.7.4. This makes it possible for authenticated...