2code
21 known vulnerabilities
Top Products
The lacks CSRF checks allowing a user to invite any user to any group (including private groups)
The WPQA Builder WordPress plugin before 6.1.1 does not have CSRF checks in some places, which could allow attackers to
The WPQA Builder WordPress plugin before 6.1.1 does not sanitise and escape some of its Slider settings, which could all
The Himer WordPress theme before 2.1.1 does not have CSRF checks in some places, which could allow attackers to make use
The Himer WordPress theme before 2.1.1 does not sanitise and escape some of its Post settings, which could allow high pr
The Himer WordPress theme before 2.1.1 does not have CSRF checks in some places, which could allow attackers to make log
The allows any authenticated user to join a private group due to a missing authorization check on a function
The Himer WordPress theme before 2.1.1 does not have CSRF checks in some places, which could allow attackers to make use
The WPQA Builder WordPress plugin before 5.9.3 (which is a companion plugin used with Discy and Himer Discy WordPress th
The WPQA Builder WordPress plugin before 5.9 does not have CSRF check when following and unfollowing users, which could
The WPQA Builder WordPress plugin before 5.7 which is a companion plugin to the Hilmer and Discy , does not check author
The Discy WordPress theme before 5.0 lacks authorization checks then processing ajax requests to the discy_update_option
The WPQA Builder WordPress plugin before 5.5 which is a companion to the Discy and Himer , lacks authentication in a RES
The WPQA Builder WordPress plugin before 5.4, used as a companion for the Discy and Himer , does not sanitise and escape
The Ask me WordPress theme before 6.8.2 does not perform CSRF checks for any of its AJAX actions, allowing an attacker t
The Discy WordPress theme before 5.2 does not check for CSRF tokens in the AJAX action discy_reset_options, allowing an
The Discy WordPress theme before 5.2 lacks CSRF checks in some AJAX actions, allowing an attacker to make a logged in ad
The Ask me WordPress theme before 6.8.2 does not properly sanitise and escape several of the fields in the Edit Profile
The WPQA Builder Plugin WordPress plugin before 5.2, used as a companion plugin for the Discy and Himer , does not valid
The WPQA Builder Plugin WordPress plugin before 5.2, used as a companion plugin for the Discy and Himer , does not valid
The WPQA Builder Plugin WordPress plugin before 5.2, used as a companion plugin for the Discy and Himer , does not sanit
Frequently Asked Questions
How many CVEs affect 2code?
2code has 21 CVE records in our database, including 0 critical and 3 high severity vulnerabilities.
What are the most severe 2code vulnerabilities?
2code has 0 critical severity (CVSS 9.0+) and 3 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for 2code vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in 2code products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect 2code Vulnerabilities
CyberStrike scans your infrastructure for 2code vulnerabilities and provides real-time remediation guidance.
Get Started