CVE-2021-47933
MStore API – Create Native Android & iOS Apps On The Cloud
Minimum safe version
4.18.4
Update to 4.18.4 or later to address 37 fixable vulnerabilities
MStore API <= 4.18.3 - Authenticated (Subscriber+) Insecure Direct Object Reference to Arbitrary User Meta Update
MStore API – Create Native Android & iOS Apps On The Cloud <= 4.17.5 - Missing Authorization to Authenticated (Subscriber+) Posts Creation
MStore API – Create Native Android & iOS Apps On The Cloud <= 4.17.4 - Unauthenticated Limited Privilege Escalation
CVE-2024-12042
CVE-2024-11179
CVE-2024-8269
CVE-2024-8242
CVE-2024-7628
CVE-2024-6328
WordPress MStore API Plugin <= 4.10.1 is vulnerable to Cross Site Request Forgery (CSRF)
WordPress MStore API Plugin <= 4.10.7 is vulnerable to Privilege Escalation
CVE-2023-45055
CVE-2023-3209
CVE-2023-3131
CVE-2023-3077
CVE-2023-3076
WordPress MStore API Plugin <= 4.0.1 is vulnerable to SQL Injection
CVE-2022-47614
WordPress MStore API Plugin < 3.9.6 is vulnerable to Broken Access Control
CVE-2023-3198
CVE-2023-3202
CVE-2023-3201
CVE-2023-3203
CVE-2023-3199
CVE-2023-3200
MStore API <= 3.9.6 - Missing Authorization
MStore API < 2.1.6 - Unauthenticated Arbitrary Account Creation/Edition
MStore API < 3.4.5 - Unauthenticated PHP File Upload
CVE-2020-36713
CVE-2023-2734
CVE-2023-2733
CVE-2023-2732
MStore API <= 2.1.5 - Authentication Bypass
MStore API < 3.4.5 - Arbitrary File Upload
WordPress MStore API plugin <= 2.1.5 - Unauthenticated Account Create/Edit vulnerability
WordPress MStore API plugin <= 3.1.9 - Bypass vulnerability in Apple login authentication method
CVE-2021-24148