CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Ultimate Auction Pro (Unauthenticated SQL Injection) < 1.5.3
1 May
PROTECTED
Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager (Unauthenticated SQL Injection) < 4.89
1 May
PROTECTED
Advance Seat Reservation Management for WooCommerce (Unauthenticated SQL Injection) < 3.4
1 May
PROTECTED
Projectopia WordPress Project Management (Missing Authorization to Authenticated Arbitrary Option Deletion) < 5.1.17
30 Apr
PROTECTED
NewsBlogger (Arbitrary File Upload) < 0.2.5.2
30 Apr
PROTECTED
OttoKit: All-in-One Automation Platform (Formerly SureTriggers) (Unauthenticated Privilege Escalation) < 1.0.83
30 Apr
PROTECTED
Page View Count (Missing Authorization to Authenticated Options Update) < 2.8.5
30 Apr
PROTECTED
Fable Extra (Unauthenticated Local File Inclusion) < 1.0.7
25 Apr
PROTECTED
SEUR Oficial (Local File Inclusion) < 2.2.24
25 Apr
PROTECTED
Edumall (Unauthenticated Local File Inclusion) < 4.3.0
25 Apr
PROTECTED
Jupiter X Core (Unauthenticated PHP Object Injection via PHAR) < 4.8.12
25 Apr
PROTECTED
Service Finder Bookings (Unauthenticated Privilege Escalation) < 6.0
24 Apr
PROTECTED
Flynax Bridge (Unauthenticated Privilege Escalation via Password Update)
23 Apr
PROTECTED
Database Toolset (Unauthenticated Arbitrary File Deletion)
23 Apr
PROTECTED
My Tickets - Accessible Event Ticketing (Privilege Escalation) < 2.0.17
23 Apr
PROTECTED
Verification SMS with TargetSMS (Unauthenticated Limited Remote Code Execution)
23 Apr
PROTECTED
Xelion Webchat (Arbitrary Options Update)
23 Apr
PROTECTED
Greenshift (Arbitrary File Upload) < 11.4.6
21 Apr
PROTECTED
UrbanGo Membership (Unauthenticated Privilege Escalation) < 1.1
18 Apr
PROTECTED
AIHub (Unauthenticated Arbitrary File Upload) < 1.3.8
18 Apr
PROTECTED