CVE-2026-39564
- EPSS 0.02%
- Veröffentlicht 08.04.2026 08:30:18
- Zuletzt bearbeitet 14.04.2026 19:16:38
Insertion of Sensitive Information Into Sent Data vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Retrieve Embedded Sensitive Data.This issue affects Sunshine Photo Cart: from n/a through < 3.6.2.
CVE-2025-67973
- EPSS 0.05%
- Veröffentlicht 20.02.2026 15:46:29
- Zuletzt bearbeitet 15.04.2026 00:35:42
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through <= 3.5.6.2.
CVE-2026-24994
- EPSS 0.04%
- Veröffentlicht 03.02.2026 14:08:37
- Zuletzt bearbeitet 15.04.2026 00:35:42
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through <= 3.5.7.2.
CVE-2025-68535
- EPSS 0.05%
- Veröffentlicht 24.12.2025 12:31:27
- Zuletzt bearbeitet 15.04.2026 00:35:42
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through <= 3.5.7.1.
CVE-2025-62892
- EPSS 0.04%
- Veröffentlicht 27.10.2025 01:33:47
- Zuletzt bearbeitet 15.04.2026 00:35:42
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Sunshine Photo Cart: from n/a through <= 3.5.3.
CVE-2025-5482
- EPSS 0.24%
- Veröffentlicht 04.06.2025 07:21:45
- Zuletzt bearbeitet 11.07.2025 18:50:03
The Sunshine Photo Cart: Free Client Photo Galleries for Photographers plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.4.11. This is due to the plugin not properly validating a u...
CVE-2025-31084
- EPSS 0.37%
- Veröffentlicht 01.04.2025 06:15:56
- Zuletzt bearbeitet 01.04.2026 17:20:56
Deserialization of Untrusted Data vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Object Injection.This issue affects Sunshine Photo Cart: from n/a through <= 3.4.10.
CVE-2022-45826
- EPSS 0.11%
- Veröffentlicht 13.12.2024 15:15:08
- Zuletzt bearbeitet 11.04.2025 14:58:22
Missing Authorization vulnerability in WP Sunshine Sunshine Photo Cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through 2.9.13.
CVE-2024-49697
- EPSS 0.17%
- Veröffentlicht 19.11.2024 17:15:09
- Zuletzt bearbeitet 01.04.2026 16:18:58
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through <= 3.2.9.
CVE-2024-47314
- EPSS 1.3%
- Veröffentlicht 01.11.2024 15:15:54
- Zuletzt bearbeitet 01.04.2026 16:18:03
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sunshine Photo Cart: from n/a through <= 3.2.8.