CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Newsletters (Local File Inclusion) < 4.10
30 May 2025
PROTECTED
Solar Energy (PHP Object Injection)
30 May 2025
PROTECTED
SUMO Affiliates Pro (Unauthenticated Arbitrary File Upload)
30 May 2025
PROTECTED
WPCHURCH (Privilege Escalation)
30 May 2025
PROTECTED
WP Pipes (Arbitrary File Deletion) < 1.4.3
30 May 2025
PROTECTED
WBW Product Table PRO (Unauthenticated SQL Injection)
30 May 2025
PROTECTED
MaxiBlocks (Arbitrary Options Update)
30 May 2025
PROTECTED
Spreadsheet Price Changer for WooCommerce and WP E-commerce - Light (Arbitrary File Download)
30 May 2025
PROTECTED
Real Time Validation for Gravity Forms (Unauthenticated Local File Inclusion)
30 May 2025
PROTECTED
WP-GeoMeta (Privilege Escalation) < 0.3.5
30 May 2025
PROTECTED
Featured Image Plus (Missing Authorization to Authenticated Featured Image Update) < 1.6.5
29 May 2025
PROTECTED
Apptha Slider Gallery (Unauthenticated Arbitrary File Read)
29 May 2025
PROTECTED
Course Builder (Unauthenticated PHP Object Injection) < 3.6.6
29 May 2025
PROTECTED
The Fashion - Model Agency One Page Beauty Theme (Unauthenticated PHP Object Injection)
29 May 2025
PROTECTED
MasterStudy LMS Pro (Arbitrary File Upload) < 4.7.1
27 May 2025
PROTECTED
Likes and Dislikes Plugin (Unauthenticated SQL Injection)
27 May 2025
PROTECTED
Property (Privilege Escalation) < 1.0.7
26 May 2025
PROTECTED
eMagicOne Store Manager for WooCommerce (Unauthenticated Arbitrary File Upload)
23 May 2025
PROTECTED
eMagicOne Store Manager for WooCommerce (Unauthenticated Arbitrary File Deletion)
23 May 2025
PROTECTED
eMagicOne Store Manager for WooCommerce (Unauthenticated Arbitrary File Upload)
23 May 2025
PROTECTED