VendorsThemewinterwpcafeall versions
Vulnerabilities

Themewinter WPCafe

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

6CVEs
CVE-2023-47805
WordPress WPCafe plugin <= 2.2.22 - Broken Access Control vulnerability
Published 2024-12-09 · Modified
9.8EPSS 0.005
CVE-2024-5431
WPCafe – Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce <= 2.2.25 - Authenticated (Contributor+) File inclusion via Shortcode
Published 2024-06-25 · Modified
8.8EPSS 0.006
CVE-2024-37513
WordPress WPCafe plugin <= 2.2.27 - Local File Inclusion vulnerability
Published 2024-07-09 · Modified
8.8EPSS 0.006
CVE-2024-43135
WordPress WPCafe plugin <= 2.2.28 - Local File Inclusion vulnerability
Published 2024-08-13 · Analyzed
8.8EPSS 0.005
CVE-2024-5427
WPCafe – Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce <= 2.2.24 - Authenticated (Contributor+) Stored Cross-Site Scripting via Reservation Form Shortcode
Published 2024-05-31 · Modified
6.4EPSS 0.003
CVE-2024-1855
WPCafe <= 2.2.23 - Unauthenticated Blind Server-Side Request Forgery
Published 2024-05-23 · Modified
5.3EPSS 0.004