CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Image Optimizer, Resizer and CDN - Sirv (Arbritary Option Deletion) < 7.3.1
19 Nov 2024
PROTECTED
Clone (PHP Object Injection) < 2.4.7
19 Nov 2024
PROTECTED
WooCommerce Product Table Lite (Arbitrary Shortcode Execution) < 3.8.7
19 Nov 2024
PROTECTED
My Contador lesr (Missing Authorization) < 2.1
19 Nov 2024
PROTECTED
WPB Popup for Contact Form 7 (Arbitrary Shortcode Execution) < 1.7.6
18 Nov 2024
PROTECTED
GamiPress (Arbitrary Shortcode Execution) < 7.1.6
18 Nov 2024
PROTECTED
Classified Listing (Arbitrary Option Update) < 3.1.16
18 Nov 2024
PROTECTED
Login using WordPress Users (Authenticated SQL Injection) < 1.15.7
15 Nov 2024
PROTECTED
Blogger 301 Redirect (Unauthenticated SQL Injection)
15 Nov 2024
PROTECTED
PostX (Arbitrary Plugin Installation/Activation) < 4.1.17
15 Nov 2024
PROTECTED
3D FlipBook, PDF Viewer, PDF Embedder (Authenticated Arbitrary File Upload)
15 Nov 2024
PROTECTED
PDF Generator Addon for Elementor Page Builder ( Unauthenticated Arbitrary File Download)
15 Nov 2024
PROTECTED
Backup and Staging by WP Time Capsule (Arbitrary File Upload) < 1.22.22
15 Nov 2024
PROTECTED
WP Activity Log (Cross-Site Scripting) < 5.2.2
14 Nov 2024
PROTECTED
Tripetto (Unauthentiated Stored Cross Site Scripting )
14 Nov 2024
PROTECTED
Really Simple Security < 9.1.2
14 Nov 2024
PROTECTED
Chartify - WordPress Chart Plugin (Unauthenticated Local File Inclusion) < 2.9.6
13 Nov 2024
PROTECTED
Migration, Backup, Staging - WPvivid (PHP Object Injection) < 0.9.108
13 Nov 2024
PROTECTED
The FOX - Currency Switcher Professional for WooCommerce (Arbitrary Shortcode Execution) < 1.4.2.3
12 Nov 2024
PROTECTED
MultiManager WP (Authentication Bypass) < 1.1.0
12 Nov 2024
PROTECTED