Filtered by vendor Cozmoslabs
Subscriptions
Filtered by product Profile Builder
Subscriptions
Total
24 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2015-9337 | 1 Cozmoslabs | 1 Profile Builder | 2024-11-21 | N/A |
The profile-builder plugin before 2.1.4 for WordPress has no access control for activating or deactivating addons via AJAX. | ||||
CVE-2015-9328 | 1 Cozmoslabs | 1 Profile Builder | 2024-11-21 | N/A |
The profile-builder plugin before 2.2.5 for WordPress has XSS. | ||||
CVE-2014-10380 | 1 Cozmoslabs | 1 Profile Builder | 2024-11-21 | N/A |
The profile-builder plugin before 1.1.66 for WordPress has multiple XSS issues in forms. | ||||
CVE-2024-6695 | 1 Cozmoslabs | 1 Profile Builder | 2024-08-01 | 9.8 Critical |
it's possible for an attacker to gain administrative access without having any kind of account on the targeted site and perform unauthorized actions. This is due to improper logic flow on the user registration process. |