CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Tiare Membership (Unauthenticated Privilege Escalation) < 1.3
26 Nov 2025
PROTECTED
CIBELES AI (Arbitrary File Upload) < 1.10.9
25 Nov 2025
PROTECTED
AI Feeds (Arbitrary File Upload) < 1.0.12
25 Nov 2025
PROTECTED
EduKart Pro (Unauthenticated Privilege Escalation)
24 Nov 2025
PROTECTED
ProjectList (Arbitrary File Upload)
24 Nov 2025
PROTECTED
Simple User Registration (Stored Cross-Site Scripting) < 6.7
20 Nov 2025
PROTECTED
S2B AI Assistant - ChatBot, ChatGPT, OpenAI, Content & Image Generator (Arbitrary File Upload) < 1.7.9
20 Nov 2025
PROTECTED
ELEX WordPress HelpDesk & Customer Ticketing System (Arbitrary File Upload) < 3.3.2
20 Nov 2025
PROTECTED
WPBookit (Stored Cross-Site Scripting) < 1.0.7
20 Nov 2025
PROTECTED
WP AUDIO GALLERY (Arbitrary File Deletion)
20 Nov 2025
PROTECTED
Realty Portal (Arbitrary Options Update)
20 Nov 2025
PROTECTED
Flo Forms - Easy Drag & Drop Form Builder (Unauthenticated Stored Cross-Site Scripting via SVG Upload)
20 Nov 2025
PROTECTED
Vitepos - Point of Sale (POS) for WooCommerce (Arbitrary File Upload to Remote Code Execution) < 3.3.1
20 Nov 2025
PROTECTED
WP Directory Kit (Unauthenticated SQL Injection) < 1.4.4
20 Nov 2025
PROTECTED
Community Events (Unauthenticated SQL Injection) < 1.5.5
18 Nov 2025
PROTECTED
Chat Help - Click to Chat Button & Form (Sensitive Information Exposure) < 3.1.4
18 Nov 2025
PROTECTED
Code Snippets (PHP Code Injection) < 3.9.2
18 Nov 2025
PROTECTED
Giveaways and Contests by RafflePress - Get More Website Traffic, Email Subscribers, and Social Followers (Cross-Site Scripting) < 1.12.21
18 Nov 2025
PROTECTED
Gravity Forms (Unauthenticated Arbitrary File Upload) < 2.9.22
17 Nov 2025
PROTECTED
Pie Forms for WP (Unauthenticated Arbitrary File Upload)
17 Nov 2025
PROTECTED