CVEs we hold for Emarket-design
Records whose assigning authority named Emarket-design as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-9848WP Ticket <= 6.0.4 - Unauthenticated SQL Injection via WordPress Search 's' Parameteremarket-design Customer Support Ticket System & Helpdesk
CVE-2026-15790Video Gallery <= 4.0.4 - Authenticated (Author+) Stored Cross-Site Scripting via Attachment 'post_title' via…emarket-design Video Gallery – YouTube Gallery, Playlist &…
CVE-2026-15011Customer Support Ticket System & Helpdesk <= 6.0.5 - Unauthenticated Code Injection via 'path' Parameteremarket-design Customer Support Ticket System & Helpdesk
CVE-2026-14249Request a Quote Form Plugin <= 2.5.5 - Unauthenticated Code Injection via 'path' Parameteremarket-design Request a Quote – Quote Forms for Any…
CVE-2026-12923Video Gallery <= 4.0.3 - Authenticated (Subscriber+) Arbitrary Function Call via 'path' Parameteremarket-design Video Gallery – YouTube Gallery, Playlist &…
CVE-2025-8420Multiple Plugins by emarket-design <= Multiple Versions - Unauthenticated Limited Remote Code Executionemarket-design Customer Support Ticket System & Helpdesk…
CVE-2025-8315WP Easy Contact <= 4.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via noaccess_msg Parameteremarket-design Simple Contact Form Plugin for WordPress –…
CVE-2025-8314Software Issue Manager <= 5.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via noaccess_msg Parameteremarket-design Project Management, Bug and Issue Tracking…
CVE-2025-8313Campus Directory <= 1.9.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via noaccess_msg Parameteremarket-design Campus Directory – Faculty, Staff & Student…
CVE-2025-8295Employee Directory <= 4.5.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via noaccess_msg Parameteremarket-design Employee Directory – Staff & Team Directory
CVE-2025-64248WordPress Request a Quote plugin <= 2.5.3 - Broken Access Control vulnerabilityemarket-design Request a Quote
CVE-2025-60157WordPress WP Ticket Customer Service Software & Support Ticket System Plugin <= 6.0.2 - Cross Site Scripting (XSS)…emarket-design WP Ticket Customer Service Software &…
CVE-2025-58915WordPress Request a Quote plugin <= 2.5.0 - Cross Site Scripting (XSS) vulnerabilityemarket-design Request a Quote
CVE-2025-5540Event RSVP and Simple Event Management Plugin <= 4.1.0 - Authenticated (Contributor+) Stored Cross-Site Scriptingemarket-design Event RSVP and Simple Event Management Plugin
CVE-2025-5539Simplify Contact Management: WP Easy Contact <= 4.0.0 - Authenticated (Contributor+) Stored Cross-Site Scriptingemarket-design Simple Contact Form Plugin for WordPress –…
CVE-2025-5532Faculty Staff and Student Directory Plugin – Campus Directory <= 1.9.0 - Authenticated (Contributor+) Stored Cross-Site…emarket-design Campus Directory – Faculty, Staff & Student…
CVE-2025-5531Staff Directory – Employee Directory for WordPress <= 4.5.0 - Authenticated (Contributor+) Stored Cross-Site Scriptingemarket-design Employee Directory – Staff & Team Directory
CVE-2025-54731WordPress YouTube Showcase Plugin <= 3.5.1 - PHP Object Injection Vulnerabilityemarket-design YouTube Showcase
CVE-2025-53584WordPress WP Ticket Customer Service Software & Support Ticket System Plugin <= 6.0.2 - PHP Object Injection…emarket-design WP Ticket Customer Service Software &…
CVE-2025-53583WordPress Employee Spotlight Plugin <= 5.1.1 - PHP Object Injection Vulnerabilityemarket-design Employee Spotlight
CVE-2025-53572WordPress WP Easy Contact Plugin <= 4.0.1 - PHP Object Injection Vulnerabilityemarket-design WP Easy Contact
CVE-2025-53243WordPress Employee Directory – Staff Listing & Team Directory plugin for WordPress plugin <= 4.5.5 - PHP Object…emarket-design Employee Directory – Staff Listing & Team…
CVE-2025-15636WordPress YouTube Showcase plugin <= 3.5.1 - Cross Site Scripting (XSS) vulnerabilityemarket-design YouTube Showcase
CVE-2025-13403Employee Spotlight – Team Member Showcase & Meet the Team Plugin <= 5.1.3 - Missing Authorization to Authenticated…emarket-design Employee Spotlight – Team Member Showcase &…
CVE-2025-12090Employee Spotlight – Team Member Showcase & Meet the Team Plugin <= 5.1.2 - Authenticated (Contributor+) Stored…emarket-design Employee Spotlight – Team Member Showcase &…
CVE-2024-3268YouTube Video Gallery by YouTube Showcase – Video Gallery Plugin for WordPress <= 3.3.6 - Missing Authorization to…emarket-design Video Gallery – YouTube Gallery & Responsive…
26 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.