Maxfoundry
Maxfoundry Media Library Folders: vulnerabilidades y CVE
Maxfoundry Media Library Folders tiene 7 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-0935 | Media (4.3) | 0.34% | — | 15 feb 2025 | The Media Library Folders plugin for WordPress is vulnerable to unauthorized plugin settings change due to a missing capability check on several AJAX actions in all versions up to, and including, 8.3.0. This makes it… |
| CVE-2024-7858 | Media (6.3) | 0.33% | — | 30 ago 2024 | The Media Library Folders plugin for WordPress is vulnerable to unauthorized access due to missing capability checks on several AJAX functions in the media-library-plus.php file in all versions up to, and including,… |
| CVE-2024-7857 | Media (6.5) | 0.45% | — | 29 ago 2024 | The Media Library Folders plugin for WordPress is vulnerable to second order SQL Injection via the 'sort_type' parameter of the 'mlf_change_sort_type' AJAX action in all versions up to, and including, 8.2.2 due to… |
| CVE-2024-3615 | Media (6.1) | 0.39% | — | 19 abr 2024 | The Media Library Folders plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 's' parameter in all versions up to, and including, 8.2.0 due to insufficient input sanitization and output… |
| CVE-2024-31287 | Media (6.5) | 0.66% | — | 10 abr 2024 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Max Foundry Media Library Folders.This issue affects Media Library Folders: from n/a through 8.1.8. |
| CVE-2024-30486 | Alta (8.8) | 0.58% | — | 29 mar 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Max Foundry Media Library Folders.This issue affects Media Library Folders: from n/a through 8.1.7. |
| CVE-2022-41634 | Alta (8.8) | 0.31% | — | 18 nov 2022 | Cross-Site Request Forgery (CSRF) vulnerability in Media Library Folders plugin <= 7.1.1 on WordPress. |