Known vulnerabilities in the Essential plugin
7 security advisories have been published for the Essential plugin. Each entry below states what an attacker can do, what privilege they need, and the version the issue was fixed in.
- Essential - Broken Access Control (CVE-2023-40200) MEDIUM
- Essential - Broken Access Control (CVE-2022-46845) MEDIUM
- Essential - Information Disclosure (CVE-2025-67470) MEDIUM
- Essential - Broken Access Control (CVE-2025-66106) MEDIUM
- Essential - Path Traversal (CVE-2025-32152) HIGH
- Essential - Path Traversal (CVE-2025-22305) MEDIUM
- Essential - Cross-Site Scripting (XSS) (CVE-2024-47307) MEDIUM