Habla con un experto

DIRECTORIO CVE · 2026

Vulnerabilidades conocidas

Página 19 de 163. Los registros están ordenados por fecha oficial de publicación, del más reciente al más antiguo.

Registros 1801–1900 de 16.277

Media

WordPress · Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button – Chaty

CVE-2026-18964: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button – Chaty

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button – Chaty. Floating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button – Chaty: 0 hasta 3.5.9

Leer análisis
Media

WordPress · HUSKY – Products Filter for WooCommerce Professional

CVE-2026-18562: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en HUSKY – Products Filter for WooCommerce Professional

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en HUSKY – Products Filter for WooCommerce Professional. HUSKY – Products Filter for WooCommerce Professional: 0 hasta 1.4.3

Leer análisis
Alta

WordPress · Kirki – Freeform Page Builder, Website Builder & Customizer

CVE-2026-17037: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Kirki – Freeform Page Builder, Website Builder & Customizer

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Kirki – Freeform Page Builder, Website Builder & Customizer. Kirki – Freeform Page Builder, Website Builder & Customizer: 0 hasta 6.2.0

Leer análisis
Alta

WordPress · Sticky Chat Widget – Floating Chat Icons, Contact Form, Call, Click to Chat, Email & Message Buttons

CVE-2026-15462: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en Sticky Chat Widget – Floating Chat Icons, Contact Form, Call, Click to Chat, Email & Message Buttons

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en Sticky Chat Widget – Floating Chat Icons, Contact Form, Call, Click to Chat, Email & Message Buttons. Sticky Chat Widget – Floating Chat Icons, Contact Form, Call, Click to Chat, Email & Message Buttons: 0 hasta 1.4.2

Leer análisis
Media

WordPress · GamiPress – Gamification plugin to reward points, badges & ranks in WordPress, now with AI

CVE-2026-15439: CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection) en GamiPress – Gamification plugin to reward points, badges & ranks in WordPress, now with AI

El registro oficial identifica la vulnerabilidad «CWE-89: Neutralización incorrecta de elementos especiales en una consulta (SQL Injection)» en GamiPress – Gamification plugin to reward points, badges & ranks in WordPress, now with AI. GamiPress – Gamification plugin to reward points, badges & ranks in WordPress, now with AI: 0 hasta 7.9.7

Leer análisis
Media

WordPress · Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder

CVE-2026-85645: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder. Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder: 0 hasta 1.15.46

Leer análisis
Alta

WordPress · Advanced Product Fields Extended for WooCommerce

CVE-2026-81789: CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal) en Advanced Product Fields Extended for WooCommerce

El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en Advanced Product Fields Extended for WooCommerce. Advanced Product Fields Extended for WooCommerce: n/a hasta 3.1.6

Leer análisis
Alta

WordPress · AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress

CVE-2026-77807: CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal) en AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress

El registro oficial identifica la vulnerabilidad «CWE-22: Limitación incorrecta de una ruta a un directorio restringido (Path Traversal)» en AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress. AcyMailing – An Ultimate Newsletter Plugin and Marketing Automation Solution for WordPress: 0 hasta 11.0.4

Leer análisis
Media

WordPress · Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie Notice, Custom Fonts & More

CVE-2026-85418: CWE-79: Cross-Site Scripting (XSS) en Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie Notice, Custom Fonts & More

El registro oficial identifica la vulnerabilidad «CWE-79: Cross-Site Scripting (XSS)» en Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie Notice, Custom Fonts & More. Orbit Fox: Duplicate Page, Menu Icons, SVG Support, Cookie Notice, Custom Fonts & More: 0 hasta 3.0.9

Leer análisis
Media

WordPress · WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell

CVE-2026-84908: CWE-862: Falta de autorización en WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell

El registro oficial identifica la vulnerabilidad «CWE-862: Falta de autorización» en WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell. WPFunnels – Funnel Builder for WooCommerce with Checkout & One Click Upsell: 0 hasta 3.12.13

Leer análisis
Alta

WordPress · WPBot – AI ChatBot for Live Support, Lead Generation, AI Services

CVE-2026-83593: CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting) en WPBot – AI ChatBot for Live Support, Lead Generation, AI Services

El registro oficial identifica la vulnerabilidad «CWE-79: Neutralización incorrecta de entrada durante la generación de páginas web (Cross-Site Scripting)» en WPBot – AI ChatBot for Live Support, Lead Generation, AI Services. WPBot – AI ChatBot for Live Support, Lead Generation, AI Services: 0 hasta 8.7.3

Leer análisis