CVE Tools

Cost Calculator Builder

18 CVEs tracked. None of them is in CISA KEV.

This hub aggregates every CVE we track for Cost Calculator Builder, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.

Cost Calculator Builder CVEs per month

Oct 2024 to Sep 2026. Point at a month, or focus the strip and use the arrow keys.
Cost Calculator Builder CVEs per month
MonthCVEs
2024-100
2024-110
2024-122
2025-010
2025-020
2025-031
2025-042
2025-051
2025-060
2025-070
2025-080
2025-090
2025-101
2025-111
2025-121
2026-011
2026-020
2026-030
2026-040
2026-051
2026-060
2026-071
2026-081
2026-090

Severity

How the 18 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.

  • Critical211%
  • High317%
  • Medium1372%

Latest CVEs

The 15 most recently published vulnerabilities affecting Cost Calculator Builder.

  1. CVE-2026-7753Cost Calculator Builder <= 3.6.17 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Disclosure6.5
  2. CVE-2026-10865Cost Calculator Builder <= 4.0.11 - Unauthenticated Sensitive Information Exposure of Payment Gateway Secret Keys5.3
  3. CVE-2025-14755Cost Calculator Builder <= 4.0.1 - Unauthenticated Price Manipulation and Insecure Direct Object Reference5.3
  4. CVE-2025-14757Cost Calculator Builder <= 3.6.9 - Missing Authorization to Unauthenticated Payment Status Bypass5.3
  5. CVE-2025-12529Cost Calculator Builder <= 3.6.3 - Unauthenticated Arbitrary File Deletion8.8
  6. CVE-2025-62049WordPress Cost Calculator Builder plugin <= 3.5.32 - Broken Access Control vulnerability6.5
  7. CVE-2025-9243Cost Calculator Builder <= 3.5.32 - Authenticated (Subscriber+) Missing Authorization via get_cc_orders/update_order_status Functions8.1
  8. CVE-2025-48277WordPress Cost Calculator Builder plugin <= 3.2.74 - Cross Site Scripting (XSS) Vulnerability5.9
  9. CVE-2025-39587WordPress Cost Calculator Builder plugin <= 3.2.65 - SQL Injection Vulnerability9.3
  10. CVE-2025-2128Cost Calculator Builder <= 3.2.67 - Authenticated (Subscriber+) SQL Injection via order_ids Parameter6.5
  11. CVE-2025-31414WordPress Cost Calculator Builder plugin <= 3.2.65 - Cross Site Scripting (XSS) vulnerability6.5
  12. CVE-2024-10892Cost Calculator Builder < 3.2.43 - Settings update via CSRF5.4
  13. CVE-2023-40011WordPress Cost Calculator Builder plugin <= 3.1.42 - Broken Access Control vulnerability5.4
  14. CVE-2024-8379Cost Calculator Builder < 3.2.29 - Admin+ SQL Injection7.2
  15. CVE-2024-6010Cost Calculator Builder PRO <= 3.2.1 - Unauthenticated Price Manipulation5.3

Product grouping is registry-driven, with AI assist and human review. How it works

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store