CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

Booking & Appointment Plugin for WooCommerce (Arbitrary Option Update) < 6.10.0
25 Nov 2024
PROTECTED
AppPresser - Mobile App Framework (Privilege Escalation) < 4.4.7
25 Nov 2024
PROTECTED
Request a Quote for WooCommerce and Elementor (Arbitrary Shortcode Execution via fire_contact_form) < 1.5
22 Nov 2024
PROTECTED
WP-Orphanage Extended (Cross-Site Request Forgery) < 1.3
22 Nov 2024
PROTECTED
School Management (Arbitrary File Upload) < 92.0.0
22 Nov 2024
PROTECTED
FluentSMTP (Unauthenticated PHP Object Injection) < 2.2.83
22 Nov 2024
PROTECTED
WPGYM (Arbitrary File Upload) < 67.2.0
22 Nov 2024
PROTECTED
MP3 Sticky Player (Arbitrary File Read/Download) < 8.0
22 Nov 2024
PROTECTED
LA-Studio Element Kit for Elementor ( Local File Inclusion ) < 1.4.3
22 Nov 2024
PROTECTED
WPGYM (Privilege Escalation) < 67.2.0
22 Nov 2024
PROTECTED
Sky Addons for Elementor (Cross-Site Request Forgery) < 2.6.2
21 Nov 2024
PROTECTED
Activity Log Monitor & Record User Changes (Cross-Site Scripting) < 2.11.2
20 Nov 2024
PROTECTED
Grid View Gallery (PHP Object Injection)
20 Nov 2024
PROTECTED
Contact Form 7 Email Add on (Local File Inclusion)
20 Nov 2024
PROTECTED
Tutor LMS (SQL Injection) < 2.7.7
20 Nov 2024
PROTECTED
Image Optimizer, Resizer and CDN - Sirv (Arbritary Option Deletion) < 7.3.1
19 Nov 2024
PROTECTED
Clone (PHP Object Injection) < 2.4.7
19 Nov 2024
PROTECTED
WooCommerce Product Table Lite (Arbitrary Shortcode Execution) < 3.8.7
19 Nov 2024
PROTECTED
My Contador lesr (Missing Authorization) < 2.1
19 Nov 2024
PROTECTED
WPB Popup for Contact Form 7 (Arbitrary Shortcode Execution) < 1.7.6
18 Nov 2024
PROTECTED