CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Solid Mail - SMTP email and logging made by SolidWP (Unauthenticated Stored Cross-Site Scripting via Email) < 2.1.6
22 May 2025
PROTECTED
Glossary by WPPedia (PHP Object Injection)
20 May 2025
PROTECTED
Madara - Responsive and modern WordPress theme for manga sites (Local File Inclusion) < 2.2.2.1
20 May 2025
PROTECTED
Splitit (Missing Authorization)
20 May 2025
PROTECTED
Motors (Privilege Escalation) < 5.6.68
19 May 2025
PROTECTED
TheGem (Arbitrary File Upload) < 5.10.3.1
16 May 2025
PROTECTED
Crawlomatic Multipage Scraper Post Generator (Unauthenticated Arbitrary File Upload) < 2.6.8.2
16 May 2025
PROTECTED
Echo RSS Feed Post Generator (Unauthenticated Arbitrary File Upload) < 5.4.8.2
16 May 2025
PROTECTED
WPBot Pro WordPress Chatbot (Arbitrary File Deletion) < 13.7.0
16 May 2025
PROTECTED
TI WooCommerce Wishlist (Arbitrary File Upload)
16 May 2025
PROTECTED
Printcart Web to Print Product Designer for WooCommerce (Arbitrary File Upload)
16 May 2025
PROTECTED
STAGGS (Arbitrary File Upload)
16 May 2025
PROTECTED
WP Content Security Plugin (Unauthenticated Stored Cross-Site Scripting)
14 May 2025
PROTECTED
TicketBAI Facturas para WooCommerce (Unauthenticated Arbitrary File Deletion) < 3.19
14 May 2025
PROTECTED
File Manager Advanced Shortcode (Local JavaScript File Inclusion via Shortcode) < 2.6.0
14 May 2025
PROTECTED
UiPress lite | Effortless custom dashboards, admin themes and pages (Remote Code Execution) < 3.5.08
14 May 2025
PROTECTED
Baiduseo (Unauthenticated Arbitrary File Upload)
14 May 2025
PROTECTED
Uncanny Automator (PHP Object Injection) < 6.4.0.2
13 May 2025
PROTECTED
Frontend Dashboard (Privilege Escalation) < 2.2.8
12 May 2025
PROTECTED
Frontend Dashboard (Privilege Escalation) < 2.2.8
12 May 2025
PROTECTED