← WordPress Vulnerabilities
WordPress security by component

Kaswara Modern VC Addons

Kaswara Modern VC Addons is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Oct 16, 2024; the highest CVE/CNA score is 9.8.

Plugin slug: kaswara

CVE-2021-4448: Kaswara Modern VC Addons: A security weakness

Kaswara Modern VC Addons is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.

PublishedOct 16, 2024
Safe version guidanceSee mitigation notes
Safe version
Oct 16, 2024 CVE-2021-4448
Kaswara Modern VC Addons: A security weakness
Kaswara Modern VC Addons is affected by a security weakness. The vulnerable path is reachable without authentication. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE7.3
NVD9.8
May 14, 2021 CVE-2021-24284
Kaswara Modern VC Addons: Dangerous file upload
Kaswara Modern VC Addons is affected by dangerous file upload. The vulnerable path is reachable without authentication. Successful exploitation can place attacker-controlled executable content on the server and may lead to full site compromise.
See mitigation notes
CVE9.8
NVD9.8