CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Avada Builder (Arbitrary Shortcode Execution) < 3.11.14
12 Feb
PROTECTED
Majestic Support - The Leading-Edge Help Desk & Customer Support Plugin (Unprotected Directory) < 1.0.6
11 Feb
PROTECTED
Brizy - Page Builder (Arbitrary File Upload via storeUploads) < 2.6.5
11 Feb
PROTECTED
Security & Malware scan by CleanTalk (Unauthenticated Arbitrary File Upload) < 2.150
11 Feb
PROTECTED
WP Job Board Pro (Unauthenticated Privilege Escalation)
11 Feb
PROTECTED
Real Estate 7 WordPress (Unauthenticated Privilege Escalation) < 3.5.2
11 Feb
PROTECTED
Welcart e-Commerce (Unauthenticated Stored Cross-Site Scripting) < 2.11.10
11 Feb
PROTECTED
Small Package Quotes Purolator Edition (SQL Injection)
11 Feb
PROTECTED
LTL Freight Quotes Unishippers Edition (SQL Injection) < 2.5.9
11 Feb
PROTECTED
WP Abstracts (Cross Site Request Forgery Arbitrary Account Deletion) < 2.7.4
11 Feb
PROTECTED
ShipEngine Shipping Quotes (SQL Injection)
11 Feb
PROTECTED
Ebook Downloader (Unauthenticated SQL Injection)
11 Feb
PROTECTED
All-Images.ai IA Image Bank and Custom Image creation (Arbitrary File Upload) < 1.0.5
11 Feb
PROTECTED
Popup Plugin For WordPress ConvertPlus (Limited Options Update) < 3.5.31
11 Feb
PROTECTED
Export All Posts, Products, Orders, Refunds & Users (Information Disclosure Through Unprotected Directory) < 2.10
11 Feb
PROTECTED
Customer Email Verification for WooCommerce (Authentication Bypass via Shortcode) < 2.9.6
11 Feb
PROTECTED
Small Package Quotes UPS Edition (Unauthenticated SQL Injection) < 4.5.17
11 Feb
PROTECTED
Apus Framework(Arbitrary Options Update)
11 Feb
PROTECTED
Click Mag Viral WordPress News Magazine/Blog Theme (Arbitrary Options Deletion) < 3.7.0
11 Feb
PROTECTED
ZoxPress The All-In-One WordPress News Theme (Arbitrary Options Update) < 2.12.1
11 Feb
PROTECTED