Motors - car dealer\, classifieds \& listing
This hub aggregates every CVE we track for Motors - car dealer\, classifieds \& listing, a product in the web cms plugins space. Use it to gauge the current risk picture and drill into individual advisories.
Web & CMS Pluginsweb app
12
CVEs tracked
0
Critical
3
High
0
In CISA KEV
Severity distribution
MEDIUM9HIGH3
Monthly trend
0
0
0
0
1
0
1
3
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-092026-08
Latest CVEs
The 12 most recently published vulnerabilities affecting Motors - car dealer\, classifieds \& listing.
- CVE-2025-3437Motors – Car Dealership & Classified Listings Plugin <= 1.4.66 - Missing Authorization to Authenticated (Subscriber+) Wizard Set-up4.3
- CVE-2025-2808Motors – Car Dealership & Classified Listings Plugin <= 1.4.63 - Authenticated (Subscriber+) Stored Cross-Site Scripting5.4
- CVE-2025-2807Motors – Car Dealership & Classified Listings Plugin <= 1.4.64 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Installation8.8
- CVE-2024-13737Motors – Car Dealer, Classifieds & Listing <= 1.4.57 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Deletion and Listing Template Creation4.3
- CVE-2024-10970Motors – Car Dealer, Classifieds & Listing <= 1.4.43 - Authenticated (Subscriber+) Arbitrary Shortcode Execution via Custom Title5.4
- CVE-2024-5545Motors – Car Dealer, Classifieds & Listing <= 1.4.9 - Missing Authorization5.3
- CVE-2023-46207WordPress Motors – Car Dealer & Classified Ads Plugin <= 1.4.6 is vulnerable to Server Side Request Forgery (SSRF)4.1
- CVE-2023-46208WordPress Motors – Car Dealer & Classified Ads Plugin <= 1.4.6 is vulnerable to Cross Site Scripting (XSS)7.1
- CVE-2022-38716WordPress Motors – Car Dealer & Classified Ads Plugin <= 1.4.4 is vulnerable to Cross Site Request Forgery (CSRF)5.4
- CVE-2022-3989Motors - Car Dealer, Classifieds & Listing < 1.4.4 - Arbitrary File Upload8.8
- CVE-2019-17229includes/options.php in the motors-car-dealership-classified-listings (aka Motors - Car Dealer & Classified Ads) plugin through 1.4.0 for WordPress has multiple stored XSS issues.6.1
- CVE-2019-17228includes/options.php in the motors-car-dealership-classified-listings (aka Motors - Car Dealer & Classified Ads) plugin through 1.4.0 for WordPress allows unauthenticated options changes.6.5
Product normalization is registry-driven with AI assist and human review. How it works