CROWD-SOURCED
VULNERABILITIES DATABASE

Vulnerabilities Crowdsourced from WordPress security researchers and the amazing public databases of –

bSecure (Unauthenticated Privilege Escalation) < 1.7.9
21 Jul
PROTECTED
Shortcodes Ultimate (Cross-Site Request Forgery) < 7.4.3
20 Jul
PROTECTED
Vchasno Kasa (Unauthenticated Log File Clearing) < 1.0.4
18 Jul
PROTECTED
LoginPress Pro (Authentication Bypass via WordPress.com OAuth provider) < 5.0.2
17 Jul
PROTECTED
aapanel WP Toolkit (Privilege Escalation) < 1.1
17 Jul
PROTECTED
B1.lt for WooCommerce (Arbitrary SQL Injection) < 2.2.57
17 Jul
PROTECTED
Attachment Manager (Arbitrary File Deletion)
17 Jul
PROTECTED
Madara - Core (Arbitrary File Deletion) < 2.2.4
16 Jul
PROTECTED
Ultimate WP Mail (Privilege Escalation) < 1.3.7
15 Jul
PROTECTED
Malcure Malware Scanner Toolset for WordPress Malware Removal (Arbitrary File Deletion)
15 Jul
PROTECTED
WP Event Manager (Cross-Site Scripting) < 3.1.51
15 Jul
PROTECTED
Ultimate WP Mail (Privilege Escalation) < 1.3.7
15 Jul
PROTECTED
Alone - Charity Multipurpose Non-profit WordPress Theme (Arbitrary File Deletion) < 7.8.5
14 Jul
PROTECTED
Restrict File Access (Arbitrary File Deletion)
14 Jul
PROTECTED
HT Contact Form Widget For Elementor Page Builder & Gutenberg Blocks & Form Builder (Arbitrary File Upload) < 2.2.2
14 Jul
PROTECTED
HT Contact Form Widget For Elementor Page Builder & Gutenberg Blocks & Form Builder (Unauthenticated Arbitrary File Deletion) < 2.2.2
14 Jul
PROTECTED
WPBookit (Arbitrary File Upload) < 1.0.5
11 Jul
PROTECTED
WPBookit (Arbitrary File Upload) < 1.0.5
11 Jul
PROTECTED
Friends (PHP Object Injection) < 3.5.2
11 Jul
PROTECTED
Nokri - Job Board WordPress Theme (Privilege Escalation) < 1.6.4
11 Jul
PROTECTED