CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

The Events Calendar (SQL Injection) < 6.6.4.1
24 Sep 2024
PROTECTED
Prisna GWT (PHP Object Injection) < 1.4.12
24 Sep 2024
PROTECTED
Daily Prayer Time (SQL Injection) < 2024.09.14
24 Sep 2024
PROTECTED
WordPress Simple HTML Sitemap (SQL Injection) < 3.2
24 Sep 2024
PROTECTED
Advanced File Manager (Local File Inclusion) < 5.2.9
24 Sep 2024
PROTECTED
WP Easy Gallery (SQL Injection)
23 Sep 2024
PROTECTED
Easy Digital Downloads (PHAR Deserialization) < 3.3.4
23 Sep 2024
PROTECTED
Donation Forms by Charitable (Privilege Escalation) < 1.8.1.15
23 Sep 2024
PROTECTED
MDTF - Meta Data and Taxonomies Filter (Arbitrary Shortcode Execution) < 1.3.3.4
23 Sep 2024
PROTECTED
Test Rule - Postman test (duplicate post plugin)
18 Sep 2024
PROTECTED
Backuply (SQL Injection) < 1.3.5
17 Sep 2024
PROTECTED
Login with phone number (Privilege Escalation) < 1.7.50
17 Sep 2024
PROTECTED
PropertyHive (Cross-Site Request Forgery) < 2.0.20
17 Sep 2024
PROTECTED
Share This Image (Open Redirect via link Parameter) < 2.04
17 Sep 2024
PROTECTED
FOX - Currency Switcher Professional for WooCommerce (Arbitrary Shortcode Execution) < 1.4.2.2
13 Sep 2024
PROTECTED
Post Form (Privilege Escalation) < 2.8.12
13 Sep 2024
PROTECTED
Stream (Arbitrary Options Update) < 4.0.2
13 Sep 2024
PROTECTED
MStore API - Create Native Android & iOS Apps On The Cloud (Unauthorized User Registration) < 4.15.4
12 Sep 2024
PROTECTED
WP Editor (PHAR Deserialization) < 1.2.9.1
12 Sep 2024
PROTECTED
LearnPress (SQL Injection) < 4.2.7.1
11 Sep 2024
PROTECTED