Skip to main content

Vendor/product archive

themewinter / wpcafe CVEs

Beta · best-effort

6 CVEs tagged to themewinter / wpcafe0 Critical, 3 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2023-47805

Published Dec 9, 2024

Missing Authorization vulnerability in Arraytics WPCafe wp-cafe allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WPCafe: from n/a through…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-43135

Published Aug 13, 2024

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themewinter WPCafe allows PHP Local File Inclusion.This issue affects WPCafe: from…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-37513

Published Jul 9, 2024

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themewinter WPCafe allows Path Traversal.This issue affects WPCafe: from n/a throug…

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5431

Published Jun 25, 2024

The WPCafe – Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, an…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-5427

Published May 31, 2024

The WPCafe – Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's R…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-1855

Published May 23, 2024

The WPCafe – Restaurant Menu, Online Ordering for WooCommerce, Pickup / Delivery and Table Reservation plugin for WordPress is vulnerable to Server-Side Request Forgery in all ver…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1