Search Results (3 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-66127 2 G5theme, Wordpress 2 Essential Real Estate, Wordpress 2025-12-16 5.4 Medium
Missing Authorization vulnerability in g5theme Essential Real Estate essential-real-estate allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Real Estate: from n/a through <= 5.2.2.
CVE-2025-68071 2 G5theme, Wordpress 2 Essential Real Estate, Wordpress 2025-12-16 6.5 Medium
Authorization Bypass Through User-Controlled Key vulnerability in g5theme Essential Real Estate essential-real-estate allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Real Estate: from n/a through <= 5.2.2.
CVE-2022-3933 1 G5theme 1 Essential Real Estate 2025-04-22 5.4 Medium
The Essential Real Estate WordPress plugin before 3.9.6 does not sanitize and escapes some parameters, which could allow users with a role as low as Admin to perform Cross-Site Scripting attacks.