Product
sunshinephotocart sunshine photo cart
16 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-5482
CVE-2025-31084
CVE-2022-45826
CVE-2024-49697
CVE-2024-47314
CVE-2024-44038
CVE-2024-43136
CVE-2024-50463
CVE-2024-43971
CVE-2024-30221
CVE-2024-30194
CVE-2024-1294
CVE-2023-41796
CVE-2021-4415
CVE-2022-40692
CVE-2022-4301
< 3.4.12
The Sunshine Photo Cart: Free Client Photo Galleries for Photographers plugin for WordPress is vulnerable to privilege escalation
< 3.4.11
Deserialization of Untrusted Data vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Object Injecti
< 2.9.14
Missing Authorization vulnerability in WP Sunshine Photo Cart allows Exploiting Incorrectly Configured Access Control Sec
< 3.2.10
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incorrectly Con
< 3.2.9
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incorrectly Con
< 3.2.10
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart allows Exploiting Incorrectly Con
< 3.2.2
Missing Authorization vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart.This issue affects Sunshine Photo
< 3.2.11
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart.Thi
< 3.2.6
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sunshinephotocart Sunshine P
< 3.1.2
Deserialization of Untrusted Data vulnerability in sunshinephotocart Sunshine Photo Cart sunshine-photo-cart.This issue affects Su
< 3.1.2
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sunshinephotocart Sunshine P
< 3.1
The Sunshine Photo Cart: Free Client Galleries for Photographers plugin for WordPress is vulnerable to Sensitive Information Expos
< 3.0
Authorization Bypass Through User-Controlled Key vulnerability in WP Sunshine Photo Cart: Free Client Galleries for Photo
<= 2.8.28
The Sunshine Photo Cart plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.8.28
< 2.9.14
Cross-Site Request Forgery (CSRF) vulnerability in WP Sunshine Photo Cart plugin <= 2.9.13 versions.
< 2.9.15
The Sunshine Photo Cart WordPress plugin before 2.9.15 does not sanitise and escape a parameter before outputting it back in the p