technowich CVE Vulnerabilities & CVE List (7)

Products (CPE): — CVEs: 7

technowich vulnerability overview

Aggregates CVE and security vulnerability intelligence across all technowich-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Disclosed issues often relate to vendor risk cross-site scripting; exposure may include vendor impact session compromise in vendor surface production workloads and vendor surface software deployment contexts.

Vulnerability distribution trend (last 24 months)

Showing 17 of 7 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2024-12770 The WP ULike WordPress plugin before 4.7.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup). [email protected] 4.8 0.09% 2025-05-15 2025-06-10
CVE-2024-7879 The WP ULike WordPress plugin before 4.7.5 does not sanitise and escape some of its settings, which could allow high privilege users such as editors to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed [email protected] 4.8 0.25% 2024-11-06 2025-04-11
CVE-2024-7878 The WP ULike WordPress plugin before 4.7.4 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup). [email protected] 4.8 0.40% 2024-09-25 2024-10-02
CVE-2024-6792 The WP ULike WordPress plugin before 4.7.2.1 does not properly sanitize user display names when rendering on a public page. [email protected] 3.5 0.18% 2024-09-06 2025-04-11
CVE-2024-6094 The WP ULike WordPress plugin before 4.7.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup). [email protected] 4.8 0.17% 2024-07-24 2024-11-21
CVE-2023-45640 Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in TechnoWich WP ULike – Most Advanced WordPress Marketing Toolkit plugin <= 4.6.8 versions. [email protected] 6.5 0.16% 2023-10-25 2024-11-21
CVE-2022-45842 Unauth. Race Condition vulnerability in WP ULike Plugin <= 4.6.4 on WordPress allows attackers to increase/decrease rating scores. [email protected] 5.3 0.15% 2022-11-30 2025-03-14
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence