CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Woodmart (Unauthenticated Arbitrary Shortcode Execution) < 8.2.4
7 Jul
PROTECTED
Migration, Backup, Staging - WPvivid Backup & Migration (Arbitrary File Upload) < 0.9.117
3 Jul
PROTECTED
VikRentCar Car Rental Management System (Arbitrary File Upload) < 1.4.4
3 Jul
PROTECTED
WP Human Resource Management (Privilege Escalation)
3 Jul
PROTECTED
GoZen Forms (SQL Injection)
3 Jul
PROTECTED
GoZen Forms (Unauthenticated SQL Injection via dirGZActiveForm)
3 Jul
PROTECTED
Download Plugin (Arbitrary File Upload) < 2.2.9
3 Jul
PROTECTED
JKDEVKIT (Arbitrary File Deletion)
2 Jul
PROTECTED
Vikinger (Arbitrary File Deletion) < 1.9.33
1 Jul
PROTECTED
Home Villas | Real Estate WordPress Theme (Arbitrary File Deletion)
1 Jul
PROTECTED
Amazon Products to WooCommerce (Server-Side Request Forgery)
1 Jul
PROTECTED
Opal Estate Pro (Unauthenticated Privilege Escalation)
30 Jun
PROTECTED
Game Users Share Buttons (Arbitrary File Deletion via themeNameId Parameter)
27 Jun
PROTECTED
PT Project Notebooks (Privilege Escalation) < 1.1.3
27 Jun
PROTECTED
BeeTeam368 Extensions Pro (Arbitrary File Deletion) < 2.3.5
27 Jun
PROTECTED
Simple Payment (Authentication Bypass to Admin) < 2.3.9
26 Jun
PROTECTED
DWT - Directory & Listing WordPress Theme (Unauthenticated Arbitrary User Password Reset) < 3.3.7
26 Jun
PROTECTED
VR Calendar (Cross-Site Request Forgery to Calendar Sync)
26 Jun
PROTECTED
Simple User Registration (Privilege Escalation)
25 Jun
PROTECTED
Amazon Products to WooCommerce (Unauthenticated Arbitrary Product Creation)
25 Jun
PROTECTED