CVE-2021-47924
Ultimate Product Catalog
Minimum safe version
5.2.16
Update to 5.2.16 or later to address 25 fixable vulnerabilities
CVE-2024-31921
CVE-2023-2711
Ultimate Product Catalog < 2.1.1 - Authenticated (Admin+) SQL Injection
Ultimate Product Catalog < 4.2.22 - Arbitrary File Upload
Ultimate Product Catalog < 3.1.3 - Multiple Vulnerabilities
Ultimate Product Catalogue < 3.1.3 - SQL Injection
Ultimate Product Catalog <= 3.8.1 - Missing Authorization to Plugin Settings Update
Ultimate Product Catalog < 4.2.3 - Authenticated SQL Injection
Ultimate Product Catalog <= 4.2.21 - Authorization Bypass and Cross-Site Request Forgery
Ultimate Product Catalogue <= 3.1.1 - Unauthenticated File Upload
Ultimate Product Catalogue <= 3.1.2 - Unauthenticated SQL Injection
Ultimate Product Catalogue <= 3.1.2 - Unauthenticated SQL Injection
Ultimate Product Catalogue <= 3.1.4 - Multiple Vulnerabilities
Ultimate Product Catalogue <= 3.9.8 - Unauthenticated Blind SQL Injection
Ultimate Product Catalogue <= 4.2.2 - Authenticated SQL Injection
WordPress Ultimate Product Catalogue plugin 3.1.2 - Multiple Vulnerabilities
WordPress Ultimate Product Catalogue plugin <=3.1.2 - Unauthenticated SQL Injection vulnerability
WordPress Ultimate Product Catalogue Plugin <= 3.1.1 - Unauthenticated File Upload
WordPress Ultimate Product Catalog Plugin 3.8.1 - Privilege Escalation
WordPress Ultimate Product Catalog Plugin 3.8.6 - Arbitrary File Upload
WordPress Ultimate Membership Pro Plugin 3.3 - SQL Injection
WordPress Ultimate Product Catalog Plugin <=3.9.8 - SQL Injection
WordPress Ultimate Product Catalogue plugin 4.2.2 - SQL Injection vulnerability
WordPress Ultimate Product Catalog plugin <= 4.2.24 - PHP Object Injection
CVE-2021-24993