← All credits
Francesco Carlucci
564 vulnerability records and advisories credit this contributor.
CVE-2024-0682
Page Restrict <= 2.5.5 - Protection Mechanism Bypass
CVE-2024-0829
Comments Extra Fields For Post,Pages and CPT <= 5.0 - Missing Authorization
CVE-2024-0830
Comments Extra Fields For Post,Pages and CPT <= 5.0 - Cross-Site Request Forgery
CVE-2024-9853
ID-SK Toolkit <= 1.7.2 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload
CVE-2024-9851
LSX Tour Operator <= 1.4.9 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload
CVE-2024-9850
SVG Case Study <= 1.0 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload
CVE-2024-9848
Product Customizer Light <= 1.0.0 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload
CVE-2024-9846
Enable Shortcodes inside Widgets,Comments and Experts <= 1.0.0 - Unauthenticated Arbitrary Shortcode Execution
CVE-2024-9839
Uix Slideshow <= 1.6.5 - Unauthenticated Arbitrary Shortcode Execution
CVE-2024-9837
AADMY – Add Auto Date Month Year Into Posts <= 2.0.1 - Unauthenticated Arbitrary Shortcode Execution