CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Void Elementor Post Grid Addon for Elementor Page builder (Local File Inclusion) < 2.4
PROTECTED
EmbedPress (Unauthenticated Local File Inclusion) < 4.0.10
PROTECTED
Tutor LMS (SQL Injection) < 2.7.3
PROTECTED
Front End Users (SQL injection) < 3.2.29
PROTECTED
MP3 Audio Player (Arbitrary File Deletion) < 5.7.1
PROTECTED
Media Library Folders (SQL Injection) < 8.2.3
PROTECTED
Clean Login (Local File Inclusion) < 1.14.6
PROTECTED
Landing Page Builder (Local File Inlcusion) < 1.5.2.1
PROTECTED
myCred - Loyalty Points and Rewards plugin for WordPress and WooCommerce (Unauthenticated PHP Object Injection) < 2.7.3
PROTECTED
WP Events Manager (SQL Injection) < 2.2.0
PROTECTED
Flaming Forms (Unauthenticated Stored Cross-Site Scripting)
PROTECTED
Crew HRM (Unauthenticated PHP Object Injection) < 1.1.2
PROTECTED
JetGridBuilder (Authenticated Local File Inclusion) < 1.1.3
PROTECTED
Easy PayPal Buy Now Button (Unauthenticated Open Redirect) < 1.9.1
PROTECTED
Participants Database (Unauthenticated Privilege Escalation) < 2.5.9.3
PROTECTED
MainWP Child Reports (Arbitrary Options Update) < 2.2.1
PROTECTED