Known Vulnerabilities for products from Wow-company

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Wow-company".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-40574 json Not Provided 2026-04-21 2026-04-21
CVE-2026-35035 json Not Provided 2026-04-06 2026-04-08
CVE-2026-34562 json Not Provided 2026-04-01 2026-04-03
CVE-2026-27326 json Not Provided 2026-03-05 2026-04-01
CVE-2026-27083 json Not Provided 2026-03-25 2026-04-24
CVE-2026-6162 json Not Provided 2026-04-13 2026-04-13
CVE-2026-3506 json Not Provided 2026-03-21 2026-04-08
CVE-2026-1935 json Not Provided 2026-03-21 2026-04-08
CVE-2025-67535 json Not Provided 2025-12-09 2026-04-23
CVE-2025-53258 json Not Provided 2025-06-27 2026-04-23
CVE-2025-24717 json Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Modal Window modal-window allows Cross Site Request Forgery.Th... Not Provided 2025-01-24 2026-04-23
CVE-2025-24715 json Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Counter Box counter-box allows Cross Site Request Forgery.This... Not Provided 2025-01-24 2026-04-23
CVE-2024-2457 json The Modal Window – create popup modal window plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plug... Not Provided 2024-04-09 2026-04-08
CVE-2024-0703 json The Sticky Buttons – floating buttons builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via sticky ... Not Provided 2024-01-23 2026-04-08
CVE-2023-27418 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 8.8 - HIGH 2023-11-12 2023-11-17
CVE-2023-25443 json Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Button Generator – easily Button Builder plugin <= 2.3.5 ve... 6.5 - MEDIUM 2023-07-11 2023-07-18
CVE-2023-23984 json Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Bubble Menu – circle floating menu plugin <= 3.0.1 leading t... 5.4 - MEDIUM 2023-03-01 2023-11-07
CVE-2023-5161 json The Modal Window plugin for WordPress is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and incl... Not Provided 2023-09-27 2026-04-08
CVE-2023-4318 json The Herd Effects WordPress plugin before 5.2.4 does not have CSRF when deleting its items, which could allow attackers to mak... 4.3 - MEDIUM 2023-09-11 2023-11-07
CVE-2023-4022 json The Herd Effects WordPress plugin before 5.2.3 does not sanitise and escape some of its settings, which could allow high priv... 4.8 - MEDIUM 2023-09-11 2023-11-07