CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Media Manager for UserPro (Arbitrary Options Update)
30 Jan
PROTECTED
Media Manager for UserPro (Arbitrary Options Update)
30 Jan
PROTECTED
Single-user-chat (Limited Options Update)
30 Jan
PROTECTED
Music Sheet Viewer (Unauthenticated Arbitrary File Read)
30 Jan
PROTECTED
MWB HubSpot for WooCommerce (Arbitrary Options Update) < 1.6.0
30 Jan
PROTECTED
iControlWP - Multiple WordPress Site Manager (PHP Object Injection) < 4.5.0
30 Jan
PROTECTED
Safe Ai Malware Protection for WP ( Missing Authorization to Unauthenticated Database Export)
30 Jan
PROTECTED
MultiVendorX -The Ultimate WooCommerce Multivendor Marketplace Solution (Unauthenticated Limited Local File Inclusion) < 4.2.15
30 Jan
PROTECTED
Contact Form & SMTP Plugin for WordPress by PirateForms (Arbitrary Shortcode Execution) < 2.6.1
29 Jan
PROTECTED
WooCommerce Wishlist (Unauthenticated Wishlist Disclosure via download_pdf_file Function) < 1.8.8
29 Jan
PROTECTED
WP Image Uploader (Arbitrary File Deletion)
29 Jan
PROTECTED
WP Image Uploader (Cross-Site Request Forgery )
29 Jan
PROTECTED
Flexible Wishlist for WooCommerce (Stored Cross-Site Scripting) < 1.2.26
28 Jan
PROTECTED
Wise Forms (Stored Cross-Site Scripting)
27 Jan
PROTECTED
Oshine Modules (Server-Side Request Forgery) < 3.3.8
27 Jan
PROTECTED
Akismet Testing
25 Jan
PROTECTED
Akismet
25 Jan
PROTECTED
Custom Product Tabs Lite for WooCommerce ( PHP Object Injection ) < 1.9.1
24 Jan
PROTECTED
ThemeREX Addons (Local File Inclusion via Shortcode) < 2.34.0
24 Jan
PROTECTED
WPBookit (Unauthenticated Arbitrary File Upload) < 1.6.10
24 Jan
PROTECTED