Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total4
Critical0
High1
Medium3
Reset
Showing 1-4 of 4 records
Threat Entry Updated 2025-06-11

CVE-2024-9529 - Advanced Custom Fields Pro Plugin

The Secure Custom Fields WordPress plugin before 6.3.9, Secure Custom Fields WordPress plugin before 6.3.6.3, Advanced Custom Fields Pro WordPress plugin before 6.3.9 does not prevent users from running arbitrary functions through its setting import functionalities, which could allow high privilege users such as admin to run arbitrary PHP functions.

PLUGIN Advanced Custom Fields Pro

CVE-2024-9529

MEDIUM CVSS 6.6 2024-11-15
Threat Entry Updated 2024-11-21

CVE-2024-4565 - Advanced Custom Fields Pro Plugin

The Advanced Custom Fields (ACF) WordPress plugin before 6.3, Advanced Custom Fields Pro WordPress plugin before 6.3 allows you to display custom field values for any post via shortcode without checking for the correct access

PLUGIN Advanced Custom Fields Pro

CVE-2024-4565

MEDIUM CVSS 6.5 2024-06-20
Threat Entry Updated 2024-11-21

CVE-2022-2594 - Advanced Custom Fields Pro Plugin

The Advanced Custom Fields WordPress plugin before 5.12.3, Advanced Custom Fields Pro WordPress plugin before 5.12.3 allows unauthenticated users to upload files allowed in a default WP configuration (so PHP is not possible) if there is a frontend form available. This vulnerability was introduced in the 5.0 rewrite and did not exist prior to that release.

PLUGIN Advanced Custom Fields Pro

CVE-2022-2594

HIGH CVSS 8.8 2022-08-22
Threat Entry Updated 2024-11-21

CVE-2021-24241 - Advanced Custom Fields Pro Plugin

The Advanced Custom Fields Pro WordPress plugin before 5.9.1 did not properly escape the generated update URL when outputting it in an attribute, leading to a reflected Cross-Site Scripting issue in the update settings page.

PLUGIN Advanced Custom Fields Pro

CVE-2021-24241

MEDIUM CVSS 6.1 2021-04-22
Scroll to top