CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Live2DWebCanvas (Arbitrary File Deletion)
30 Jan
PROTECTED
Borderless - Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg (Remote Code Execution)
30 Jan
PROTECTED
Royal Core (Arbitrary Options Update)
30 Jan
PROTECTED
Media Manager for UserPro (Arbitrary Options Update)
30 Jan
PROTECTED
Media Manager for UserPro (Arbitrary Options Update)
30 Jan
PROTECTED
Single-user-chat (Limited Options Update)
30 Jan
PROTECTED
Music Sheet Viewer (Unauthenticated Arbitrary File Read)
30 Jan
PROTECTED
MWB HubSpot for WooCommerce (Arbitrary Options Update) < 1.6.0
30 Jan
PROTECTED
iControlWP - Multiple WordPress Site Manager (PHP Object Injection) < 4.5.0
30 Jan
PROTECTED
Safe Ai Malware Protection for WP ( Missing Authorization to Unauthenticated Database Export)
30 Jan
PROTECTED
MultiVendorX -The Ultimate WooCommerce Multivendor Marketplace Solution (Unauthenticated Limited Local File Inclusion) < 4.2.15
30 Jan
PROTECTED
Contact Form & SMTP Plugin for WordPress by PirateForms (Arbitrary Shortcode Execution) < 2.6.1
29 Jan
PROTECTED
WooCommerce Wishlist (Unauthenticated Wishlist Disclosure via download_pdf_file Function) < 1.8.8
29 Jan
PROTECTED
WP Image Uploader (Arbitrary File Deletion)
29 Jan
PROTECTED
WP Image Uploader (Cross-Site Request Forgery )
29 Jan
PROTECTED
Flexible Wishlist for WooCommerce (Stored Cross-Site Scripting) < 1.2.26
28 Jan
PROTECTED
Wise Forms (Stored Cross-Site Scripting)
27 Jan
PROTECTED
Oshine Modules (Server-Side Request Forgery) < 3.3.8
27 Jan
PROTECTED
Akismet Testing
25 Jan
PROTECTED
Akismet
25 Jan
PROTECTED