Collne-inc
8 CVEs tracked since 2023. Since Sep 2023, none of them reached CISA KEV.
Collne-inc CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2023-09 | 8 | 0 |
Products
The products that kept showing up in Collne-inc's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 12 most recently published vulnerabilities affecting Collne-inc.
- CVE-2023-50847WordPress Welcart e-Commerce Plugin <= 2.9.3 is vulnerable to SQL Injection7.6
- CVE-2023-43614Cross-site scripting vulnerability in Order Data Edit page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a remote unauthenticated attacker to inject an arbitrary script.6.1
- CVE-2023-43610SQL injection vulnerability in Order Data Edit page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a user with editor (without setting authority) or higher privilege to perform unintended data...8.8
- CVE-2023-43493SQL injection vulnerability in Item List page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a user with author or higher privilege to obtain sensitive information.4.9
- CVE-2023-43484Cross-site scripting vulnerability in Item List page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a remote unauthenticated attacker to inject an arbitrary script.6.1
- CVE-2023-41962Cross-site scripting vulnerability in Credit Card Payment Setup page of Welcart e-Commerce versions 2.7 to 2.8.21 allows a remote unauthenticated attacker to inject an arbitrary script in the page.6.1
- CVE-2023-41233Cross-site scripting vulnerability in Item List page registration process of Welcart e-Commerce versions 2.7 to 2.8.21 allows a remote unauthenticated attacker to inject an arbitrary script.6.1
- CVE-2023-40532Path traversal vulnerability in Welcart e-Commerce versions 2.7 to 2.8.21 allows a user with author or higher privilege to obtain partial information of the files on the web server.4.3
- CVE-2023-40219Welcart e-Commerce versions 2.7 to 2.8.21 allows a user with editor or higher privilege to upload an arbitrary file to an unauthorized directory.7.2
- CVE-2023-22705WordPress Welcart e-Commerce Plugin <= 2.8.10 is vulnerable to Cross Site Scripting (XSS)7.1
- CVE-2022-41840WordPress Welcart eCommerce plugin <= 2.7.7 - Unauth. Directory Traversal vulnerability7.5
- CVE-2021-20734Cross-site scripting vulnerability in Welcart e-Commerce versions prior to 2.2.4 allows remote attackers to inject arbitrary script or HTML via unspecified vectors.6.1
The record
- Peak rank
- #82 in Sep 2023
- Busiest month shown
- Sep 2023, 8 CVEs
- Months with a KEV entry
- 0 since Sep 2023
- Monthly snapshots
- 1 since 2023