CVE Tools

Wp-onlinesupport-essential-plugin

6 CVEs tracked since 2024. Since Dec 2024, none of them reached CISA KEV.

Wp-onlinesupport-essential-plugin CVEs per month

Dec 2024 to Dec 2024. Point at a month, or focus the strip and use the arrow keys.
Wp-onlinesupport-essential-plugin CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2024-1260

Products

The products that kept showing up in Wp-onlinesupport-essential-plugin's monthly top three, with their CVEs summed over those months.

  1. Accordion and Accordion Slider11 month
  2. Album and Image Gallery Plus Lightbox11 month
  3. Featured Post Creative11 month

Latest CVEs

The 12 most recently published vulnerabilities affecting Wp-onlinesupport-essential-plugin.

  1. CVE-2023-39996WordPress Accordion and Accordion Slider plugin <= 1.2.4 - Broken Access Control5.3
  2. CVE-2023-39995WordPress Portfolio and Projects plugin <= 1.3.7 - Broken Access Control vulnerability4.3
  3. CVE-2022-46846WordPress Trending/Popular Post Slider and Widget plugin <= 1.5.7 - Broken Access Control vulnerability5.3
  4. CVE-2023-25060WordPress Album and Image Gallery plus Lightbox plugin <= 1.6.2 - Broken Access Control vulnerability5.3
  5. CVE-2023-25703WordPress Meta slider and carousel with lightbox plugin <= 1.6.2 - Broken Access Control vulnerability5.3
  6. CVE-2023-30488WordPress Featured Post Creative plugin <= 1.2.7 - Broken Access Control vulnerability5.3
  7. CVE-2024-43232WordPress Timeline and History slider plugin <= 2.3 - Local File Inclusion vulnerability8.5
  8. CVE-2023-48273WordPress Preloader for Website plugin <= 1.2.2 - Unauthenticated Broken Access Control vulnerability5.3
  9. CVE-2024-32601WordPress Popup Anything plugin <= 2.8 - Broken Access Control vulnerability5.3
  10. CVE-2023-38516WordPress Audio Player with Playlist Ultimate Plugin <= 1.2.2 is vulnerable to Cross Site Scripting (XSS)6.5
  11. CVE-2022-45818WordPress Hero Banner Ultimate Plugin <= 1.3.4 is vulnerable to Cross Site Scripting (XSS)6.5
  12. CVE-2022-38077WordPress Popup Anything Plugin <= 2.2.1 is vulnerable to Cross Site Request Forgery (CSRF)4.3

The record

Peak rank
#119 in Dec 2024
Busiest month shown
Dec 2024, 6 CVEs
Months with a KEV entry
0 since Dec 2024
Monthly snapshots
1 since 2024
Wp-onlinesupport-essential-plugin's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store