Radiustheme
Radiustheme THE Post Grid: vulnerabilidades y CVE
Radiustheme THE Post Grid tiene 12 vulnerabilidades publicadas, 2 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE12
Últimos 12 meses2
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-94671 | Media (6.5) | 0.17% | — | 23 sept 2026 | Contributor Cross Site Scripting (XSS) in The Post Grid <= 7.9.5 versions. |
| CVE-2026-49054 | Media (4.3) | 0.27% | — | 27 may 2026 | Missing Authorization vulnerability in Mamunur Rashid The Post Grid allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects The Post Grid: from n/a through 7.9.2. |
| CVE-2025-30814 | Alta (7.5) | 1.1% | — | 27 mar 2025 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in RadiusTheme The Post Grid the-post-grid allows PHP Local File Inclusion.This issue affects The… |
| CVE-2024-37483 | Media (5.4) | 0.33% | — | 1 nov 2024 | Missing Authorization vulnerability in RadiusTheme The Post Grid the-post-grid.This issue affects The Post Grid: from n/a through <= 7.7.4. |
| CVE-2024-37482 | Media (4.3) | 0.37% | — | 1 nov 2024 | Missing Authorization vulnerability in RadiusTheme The Post Grid the-post-grid.This issue affects The Post Grid: from n/a through <= 7.7.4. |
| CVE-2024-37481 | Media (6.5) | 0.34% | — | 1 nov 2024 | Missing Authorization vulnerability in RadiusTheme The Post Grid the-post-grid.This issue affects The Post Grid: from n/a through <= 7.7.4. |
| CVE-2024-3635 | Media (4.8) | 0.31% | — | 30 sept 2024 | The Post Grid WordPress plugin before 7.5.0 does not sanitise and escape some of its Grid settings, which could allow high privilege users such as Editor and above to perform Stored Cross-Site Scripting attacks even… |
| CVE-2024-7418 | Media (4.3) | 0.50% | — | 29 ago 2024 | The The Post Grid – Shortcode, Gutenberg Blocks and Elementor Addon for Post Grid plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.7.11 via the… |
| CVE-2024-1427 | Media (5.4) | 0.34% | — | 2 jul 2024 | The The Post Grid – Shortcode, Gutenberg Blocks and Elementor Addon for Post Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the section title tag attribute in all versions up to, and… |
| CVE-2024-35739 | Media (5.4) | 0.28% | — | 8 jun 2024 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RadiusTheme The Post Grid the-post-grid.This issue affects The Post Grid: from n/a through <= 7.7.1. |
| CVE-2023-39923 | Alta (8.8) | 0.25% | — | 3 oct 2023 | Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme The Post Grid plugin <= 7.2.7 versions. |
| CVE-2022-46853 | Alta (8.8) | 0.26% | — | 23 may 2023 | Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme The Post Grid plugin <= 5.0.4 versions. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.