CVE Tools

Cartpauj

6 CVEs tracked since 2012. Since Oct 2012, none of them reached CISA KEV.

Cartpauj CVEs per month

Oct 2012 to Apr 2014. Point at a month, or focus the strip and use the arrow keys.
Cartpauj CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2012-1030
2012-11null or fewer
2012-12null or fewer
2013-01null or fewer
2013-02null or fewer
2013-03null or fewer
2013-04null or fewer
2013-05null or fewer
2013-06null or fewer
2013-07null or fewer
2013-08null or fewer
2013-09null or fewer
2013-1010
2013-11null or fewer
2013-12null or fewer
2014-01null or fewer
2014-02null or fewer
2014-0310
2014-0410

Products

The products that kept showing up in Cartpauj's monthly top three, with their CVEs summed over those months.

  1. Mingle-forum54 months
  2. Shortcode-redirect11 month

Latest CVEs

The 9 most recently published vulnerabilities affecting Cartpauj.

  1. CVE-2025-60136WordPress User Notes plugin <= 1.0.2 - Cross Site Scripting (XSS) vulnerability5.9
  2. CVE-2025-54746WordPress Shortcode Redirect Plugin <= 1.0.02 - Cross Site Scripting (XSS) Vulnerability6.5
  3. CVE-2023-40673WordPress Cartpauj Register Captcha plugin <= 1.0.02 - Captcha Bypass vulnerability6.5
  4. CVE-2013-0735Multiple SQL injection vulnerabilities in wpf.class.php in the Mingle Forum plugin before 1.0.34 for WordPress allow remote attackers to execute arbitrary SQL commands via the id parameter in a vie...7.5
  5. CVE-2013-0734Multiple cross-site scripting (XSS) vulnerabilities in the Mingle Forum plugin before 1.0.34 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) search_words par...4.3
  6. CVE-2013-0736Multiple cross-site request forgery (CSRF) vulnerabilities in the Mingle Forum plugin 1.0.34 and possibly earlier for WordPress allow remote attackers to hijack the authentication of administrators...6.8
  7. CVE-2012-5328Multiple SQL injection vulnerabilities in the Mingle Forum plugin 1.0.32.1 and other versions before 1.0.33 for WordPress might allow remote authenticated users to execute arbitrary SQL commands vi...6.5
  8. CVE-2012-5327Multiple SQL injection vulnerabilities in fs-admin/fs-admin.php in the Mingle Forum plugin 1.0.32.1 and other versions before 1.0.33 for WordPress allow remote authenticated users to execute arbitr...6.5
  9. CVE-2012-5325Multiple cross-site scripting (XSS) vulnerabilities in the scr_do_redirect function in scr.php in the Shortcode Redirect plugin 1.0.01 and earlier for WordPress allow remote authenticated users wit...2.1

The record

Peak rank
#33 in Oct 2012
Busiest month shown
Oct 2012, 3 CVEs
Months with a KEV entry
0 since Oct 2012
Monthly snapshots
4 since 2012
Cartpauj's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store