Vulnerabilities (CVE)

Filtered by vendor Posimyth Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-45751 1 Posimyth 1 Nexter Extension 2024-01-04 N/A 7.2 HIGH
Improper Control of Generation of Code ('Code Injection') vulnerability in POSIMYTH Nexter Extension.This issue affects Nexter Extension: from n/a through 2.0.3.
CVE-2021-24948 1 Posimyth 1 The Plus Addons For Elementor 2022-01-18 5.0 MEDIUM 7.5 HIGH
The Plus Addons for Elementor - Pro WordPress plugin before 5.0.7 does not validate the qvquery parameter of the tp_get_dl_post_info_ajax AJAX action, which could allow unauthenticated users to retrieve sensitive information, such as private and draft posts