CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

LiquidPoll (Unauthenticated Stored Cross-Site Scripting)
PROTECTED
Woo Inquiry (Unauthenticated SQL Injection)
PROTECTED
Ultimate Store Kit Elementor Addons, Woocommerce Builder, EDD Builder, Elementor Store Builder, Product Grid, Product Table, Woocommerce Slider (Unauthenticated PHP Object Injection) < 2.0.4
PROTECTED
Login As Users (Authentication Bypass) < 1.4.3
PROTECTED
RegistrationMagic (Unauthenticated Stored Cross-Site Scripting) < 6.0.1.1
PROTECTED
Void Elementor Post Grid Addon for Elementor Page builder (Local File Inclusion) < 2.4
PROTECTED
EmbedPress (Unauthenticated Local File Inclusion) < 4.0.10
PROTECTED
Tutor LMS (SQL Injection) < 2.7.3
PROTECTED
Front End Users (SQL injection) < 3.2.29
PROTECTED
MP3 Audio Player (Arbitrary File Deletion) < 5.7.1
PROTECTED
Media Library Folders (SQL Injection) < 8.2.3
PROTECTED
Clean Login (Local File Inclusion) < 1.14.6
PROTECTED
Landing Page Builder (Local File Inlcusion) < 1.5.2.1
PROTECTED
myCred - Loyalty Points and Rewards plugin for WordPress and WooCommerce (Unauthenticated PHP Object Injection) < 2.7.3
PROTECTED
WP Events Manager (SQL Injection) < 2.2.0
PROTECTED
Flaming Forms (Unauthenticated Stored Cross-Site Scripting)
PROTECTED
Crew HRM (Unauthenticated PHP Object Injection) < 1.1.2
PROTECTED
JetGridBuilder (Authenticated Local File Inclusion) < 1.1.3
PROTECTED
Easy PayPal Buy Now Button (Unauthenticated Open Redirect) < 1.9.1
PROTECTED
Participants Database (Unauthenticated Privilege Escalation) < 2.5.9.3
PROTECTED