CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

MP3 Sticky Player (Arbitrary File Read/Download) < 8.0
22 Nov 2024
PROTECTED
LA-Studio Element Kit for Elementor ( Local File Inclusion ) < 1.4.3
22 Nov 2024
PROTECTED
WPGYM (Privilege Escalation) < 67.2.0
22 Nov 2024
PROTECTED
Sky Addons for Elementor (Cross-Site Request Forgery) < 2.6.2
21 Nov 2024
PROTECTED
Activity Log Monitor & Record User Changes (Cross-Site Scripting) < 2.11.2
20 Nov 2024
PROTECTED
Grid View Gallery (PHP Object Injection)
20 Nov 2024
PROTECTED
Contact Form 7 Email Add on (Local File Inclusion)
20 Nov 2024
PROTECTED
Tutor LMS (SQL Injection) < 2.7.7
20 Nov 2024
PROTECTED
Image Optimizer, Resizer and CDN - Sirv (Arbritary Option Deletion) < 7.3.1
19 Nov 2024
PROTECTED
Clone (PHP Object Injection) < 2.4.7
19 Nov 2024
PROTECTED
WooCommerce Product Table Lite (Arbitrary Shortcode Execution) < 3.8.7
19 Nov 2024
PROTECTED
My Contador lesr (Missing Authorization) < 2.1
19 Nov 2024
PROTECTED
WPB Popup for Contact Form 7 (Arbitrary Shortcode Execution) < 1.7.6
18 Nov 2024
PROTECTED
GamiPress (Arbitrary Shortcode Execution) < 7.1.6
18 Nov 2024
PROTECTED
Classified Listing (Arbitrary Option Update) < 3.1.16
18 Nov 2024
PROTECTED
Login using WordPress Users (Authenticated SQL Injection) < 1.15.7
15 Nov 2024
PROTECTED
Blogger 301 Redirect (Unauthenticated SQL Injection)
15 Nov 2024
PROTECTED
PostX (Arbitrary Plugin Installation/Activation) < 4.1.17
15 Nov 2024
PROTECTED
3D FlipBook, PDF Viewer, PDF Embedder (Authenticated Arbitrary File Upload)
15 Nov 2024
PROTECTED
PDF Generator Addon for Elementor Page Builder ( Unauthenticated Arbitrary File Download)
15 Nov 2024
PROTECTED