VendorsPlainwareshiftcontrollerany version
Vulnerabilities

Plainware ShiftController any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2023-29425
WordPress ShiftController Employee Shift Scheduling Plugin <= 4.9.23 is vulnerable to Cross Site Request Forgery (CSRF)
Published 2023-11-12 · Modified
8.8EPSS 0.003
CVE-2023-29424
WordPress ShiftController Employee Shift Scheduling Plugin <= 4.9.23 is vulnerable to Cross Site Scripting (XSS)
Published 2023-06-26 · Modified
7.1EPSS 0.004
CVE-2023-1978
ShiftController Employee Shift Scheduling <= 4.9.25 - Reflected Cross-Site Scripting via Query String
Published 2023-06-09 · Modified
6.1EPSS 0.004
CVE-2024-9435
ShiftController Employee Shift Scheduling <= 4.9.66 - Reflected Cross-Site Scripting
Published 2024-10-04 · Analyzed
6.1EPSS 0.004