Habla con un experto

DIRECTORIO CVE · 2026

Vulnerabilidades de WordPress

6.969 registros, ordenados por fecha oficial de publicación descendente.

Mostrando 100 registros · Página 40 de 70

Alta

WordPress · Chatway Live Chat – AI Chatbot, Customer Support, FAQ & Helpdesk Customer Service & Chat Buttons

CVE-2026-49082: CWE-201: vulnerabilidad de seguridad en Chatway Live Chat – AI Chatbot, Customer Support, FAQ & Helpdesk Customer Service & Chat Buttons

El registro oficial identifica la vulnerabilidad «CWE-201: vulnerabilidad de seguridad» en Chatway Live Chat – AI Chatbot, Customer Support, FAQ & Helpdesk Customer Service & Chat Buttons. Chatway Live Chat – AI Chatbot, Customer Support, FAQ & Helpdesk Customer Service & Chat Buttons: n/a hasta 1.4.8

Leer análisis
Alta

WordPress · WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels

CVE-2026-49056: CWE-497: vulnerabilidad de seguridad en WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels

El registro oficial identifica la vulnerabilidad «CWE-497: vulnerabilidad de seguridad» en WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels. WooCommerce PDF Invoices, Packing Slips, Delivery Notes and Shipping Labels: n/a hasta 4.9.4

Leer análisis
Alta

WordPress · Drag and Drop Multiple File Upload – Contact Form 7

CVE-2026-49055: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Drag and Drop Multiple File Upload – Contact Form 7

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Drag and Drop Multiple File Upload – Contact Form 7. Drag and Drop Multiple File Upload – Contact Form 7: n/a hasta 1.3.9.7

Leer análisis
Alta

WordPress · ELEX WordPress HelpDesk & Customer Ticketing System

CVE-2026-48964: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en ELEX WordPress HelpDesk & Customer Ticketing System

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en ELEX WordPress HelpDesk & Customer Ticketing System. ELEX WordPress HelpDesk & Customer Ticketing System: n/a hasta 3.3.6

Leer análisis
Alta

WordPress · Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field

CVE-2026-40769: CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal) en Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field

El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field. Contact Form Extender for Divi – Save Entries, File Upload & Country Code Field: n/a hasta 1.0.6

Leer análisis