Known Vulnerabilities for BWL Advanced FAQ Manager by Xenioushk
Listed below are 10 of the newest known vulnerabilities associated with "BWL Advanced FAQ Manager" by "Xenioushk".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-42674 json | Authentication Bypass by Spoofing vulnerability in AAM Plugin Advanced Access Manager allows URL Encoding. This issue affect... | Not Provided | 2026-06-01 | 2026-06-01 |
| CVE-2026-39499 json | Shop manager PHP Object Injection in Advanced Product Fields (Product Addons) for WooCommerce <= 1.6.19 versions. | Not Provided | 2026-06-15 | 2026-06-15 |
| CVE-2026-11360 json | The Advanced Order Export For WooCommerce plugin for WordPress is vulnerable to generic SQL Injection via the 'sort_direction... | Not Provided | 2026-06-18 | 2026-06-18 |
| CVE-2026-4075 json | The BWL Advanced FAQ Manager Lite plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'baf_sbox' shortc... | Not Provided | 2026-03-26 | 2026-04-08 |
| CVE-2025-47688 json | Missing Authorization vulnerability in Saad Iqbal Advanced File Manager file-manager-advanced allows Exploiting Incorrectly C... | Not Provided | 2025-05-07 | 2026-04-23 |
| CVE-2024-54233 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in overclokk Advanced Cont... | Not Provided | 2024-12-13 | 2026-04-23 |
| CVE-2024-53721 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Stachethemes Advanced E... | Not Provided | 2024-12-02 | 2026-04-23 |
| CVE-2024-50541 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in overclokk Advanced Cont... | Not Provided | 2024-11-19 | 2026-04-23 |
| CVE-2024-32136 json | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Xenioushk BWL Advanced ... | Not Provided | 2024-04-15 | 2026-04-28 |
| CVE-2024-31926 json | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BracketSpace Advanced C... | Not Provided | 2024-04-11 | 2026-04-28 |