Boldgrid
Boldgrid Total Upkeep: vulnerabilidades y CVE
Boldgrid Total Upkeep tiene 9 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE9
Últimos 12 meses3
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-16253 | Alta (7.5) | 0.43% | — | 12 ago 2026 | The Total Upkeep WordPress plugin before 1.17.3 does not adequately protect the secret that authorizes its backup-restore functionality and exposes it to unauthenticated users, allowing them to disclose sensitive backup… |
| CVE-2026-66708 | Alta (8.2) | 0.37% | — | 6 ago 2026 | Unauthenticated Broken Access Control in Total Upkeep <= 1.17.2 versions. |
| CVE-2026-3143 | Media (5.3) | 0.40% | — | 1 may 2026 | The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'wp_ajax_cli_cancel'… |
| CVE-2020-36848 | Alta (7.5) | 1.6% | — | 12 jul 2025 | The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.14.9 via the env-info.php and… |
| CVE-2025-2257 | Alta (7.2) | 0.86% | — | 26 mar 2025 | The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.16.10 via the compression_level setting.… |
| CVE-2024-13907 | Media (6.5) | 0.47% | — | 27 feb 2025 | The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.16.8 via the 'download' function.… |
| CVE-2024-9461 | Alta (7.2) | 1.0% | — | 26 nov 2024 | The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.16.6 via the cron_interval parameter.… |
| CVE-2024-24869 | Alta (7.5) | 0.66% | — | 17 may 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in BoldGrid Total Upkeep allows Relative Path Traversal.This issue affects Total Upkeep: from n/a through 1.15.8. |
| CVE-2022-4932 | Media (4.3) | 0.57% | — | 7 mar 2023 | The Total Upkeep plugin for WordPress is vulnerable to information disclosure in versions up to, and including 1.14.13. This is due to missing authorization on the heartbeat_received() function that triggers on… |