CVE-2025-47563
- EPSS 0.04%
- Veröffentlicht 16.05.2025 15:45:19
- Zuletzt bearbeitet 19.05.2025 13:35:50
Missing Authorization vulnerability in villatheme CURCY allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects CURCY: from n/a through 2.3.7.
CVE-2022-46796
- EPSS 0.11%
- Veröffentlicht 13.12.2024 15:15:08
- Zuletzt bearbeitet 13.12.2024 15:15:08
Missing Authorization vulnerability in VillaTheme CURCY allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects CURCY: from n/a through 2.1.25.
CVE-2024-49283
- EPSS 0.23%
- Veröffentlicht 17.10.2024 20:15:12
- Zuletzt bearbeitet 18.10.2024 12:52:33
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in VillaTheme CURCY allows Reflected XSS.This issue affects CURCY: from n/a through 2.2.3.
CVE-2023-50831
- EPSS 0.17%
- Veröffentlicht 21.12.2023 18:15:08
- Zuletzt bearbeitet 21.11.2024 08:37:22
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VillaTheme CURCY – Multi Currency for WooCommerce allows Stored XSS.This issue affects CURCY – Multi Currency for WooCommerce: from n/a through 2.2....