Vulnerability Name |
CVE
CWE
|
CWE |
Severity |
WordPress Plugin Postie 'From' Field Cross-Site Scripting (1.4.3)
|
CVE-2012-2580
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Postie Multiple Vulnerabilities (1.9.40)
|
CVE-2019-20203
CVE-2019-20204
CWE-79
CWE-264
|
CWE-79
CWE-264
|
High
|
WordPress Plugin Post Index Cross-Site Request Forgery (0.7.5)
|
CVE-2021-34637
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post Indexer (WPMU DEV) Multiple Vulnerabilities (3.0.6.1)
|
CWE-89
CWE-94
|
CWE-89
CWE-94
|
High
|
WordPress Plugin Post Lists View Custom Cross-Site Scripting (1.7.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Logo Cross-Site Scripting (1.1b)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PostmagThemes Demo Import Arbitrary File Upload (1.0.7)
|
CVE-2022-1540
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Postman SMTP Mailer/Email Log Cross-Site Scripting (2.0.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Postmatic-Post and comment subscriptions that invite you to hit reply Cross-Site Scripting (1.4.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Pay Counter PHP Object Injection (2.730)
|
CWE-915
|
CWE-915
|
High
|
WordPress Plugin Post PDF Export Local File Inclusion (1.0.1)
|
CVE-2014-2383
CWE-22
|
CWE-22
|
High
|
WordPress Plugin Post Recommendations for WordPress 'api.php' Remote File Include (1.1.2)
|
CWE-94
|
CWE-94
|
High
|
WordPress Plugin Posts in Page Local File Inclusion (1.2.4)
|
CWE-22
|
CWE-22
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Request Forgery (2.0.2)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Request Forgery (2.0.20)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (1.7.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (2.1.3)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (2.5.7)
|
CVE-2023-3082
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (2.7.0)
|
CVE-2023-5958
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (2.8.6)
|
CVE-2023-6629
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (2.8.7)
|
CVE-2023-7027
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Multiple Cross-Site Request Forgery Vulnerabilities (2.5.6)
|
CVE-2023-3178
CVE-2023-3179
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Security Bypass (2.8.7)
|
CVE-2023-6875
CWE-862
|
CWE-862
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Server-Side Request Forgery (2.1.6)
|
CVE-2022-2352
CWE-918
|
CWE-918
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark SQL Injection (2.8.6)
|
CVE-2023-6620
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark SQL Injection (2.9.3)
|
CVE-2024-5207
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Post Snippets Security Bypass (3.0.5)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Post Thumbnail Editor Multiple Cross-Site Request Forgery Vulnerabilities (2.4.1)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post Title Counter Cross-Site Scripting (1.1)
|
CVE-2021-38326
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post to CSV by BestWebSoft Cross-Site Scripting (1.3.0)
|
CVE-2017-2171
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post to CSV by BestWebSoft CSV Injection (1.4.0)
|
CVE-2022-3393
CWE-1236
|
CWE-1236
|
High
|
WordPress Plugin Post to Social Media-WordPress to Hootsuite Cross-Site Scripting (1.3.8)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post to Twitter Cross-Site Request Forgery (0.7)
|
CVE-2014-9393
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post Type Switcher Multiple Unspecified Vulnerabilities (1.5.0)
|
|
|
High
|
WordPress Plugin Post video players, slideshow albums, photo galleries and music/podcast playlist Cross-Site Scripting (1.136)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Views Count (Support caching plugins!) Cross-Site Scripting (3.0.2)
|
CVE-2022-4761
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Views Counter Cross-Site Scripting (1.3.4)
|
CVE-2021-24613
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Power Charts-Responsive Beautiful Charts & Graphs Cross-Site Scripting (0.1.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Powerhouse Museum Collection Image Grid 'tbpv_username' Parameter Cross-Site Scripting (0.9.1.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPack Addons for Elementor Multiple Cross-Site Scripting Vulnerabilities (2.3.1)
|
CVE-2021-24263
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPack for Beaver Builder Privilege Escalation (2.33.0)
|
CVE-2024-39633
CWE-269
|
CWE-269
|
High
|
WordPress Plugin PowerPack Lite for Beaver Builder Cross-Site Scripting (1.2.9.2)
|
CVE-2022-0176
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPack Lite for Beaver Builder Cross-Site Scripting (1.3.0)
|
CVE-2024-2289
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPack Lite for Beaver Builder Cross-Site Scripting (1.3.0.4)
|
CVE-2024-37409
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPack Lite for Beaver Builder Local File Inclusion (1.3.0.3)
|
CVE-2024-37410
CWE-22
|
CWE-22
|
High
|
WordPress Plugin PowerPack Pro for Elementor Privilege Escalation (2.10.14)
|
CVE-2024-39634
CWE-269
|
CWE-269
|
High
|
WordPress Plugin Powerplay Gallery 'upload.php' Arbitrary File Upload (3.2)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Powerplay Gallery Multiple Vulnerabilities (3.3)
|
CVE-2015-5599
CVE-2015-5681
CVE-2015-5682
CWE-89
CWE-434
|
CWE-89
CWE-434
|
High
|
WordPress Plugin PowerPress Podcasting by Blubrry Arbitrary File Upload (8.3.7)
|
CVE-2021-24123
CWE-434
|
CWE-434
|
High
|
WordPress Plugin PowerPress Podcasting by Blubrry Cross-Site Scripting (6.0)
|
CVE-2015-1385
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPress Podcasting by Blubrry Cross-Site Scripting (6.0.4)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPress Podcasting by Blubrry Cross-Site Scripting (10.0)
|
CVE-2023-1917
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPress Podcasting by Blubrry Cross-Site Scripting (10.0.1)
|
CVE-2023-30778
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPress Podcasting by Blubrry Malicious Code (11.9.4)
|
CVE-2024-6297
CWE-506
|
CWE-506
|
High
|
WordPress Plugin PowerPress Podcasting by Blubrry Multiple Vulnerabilities (8.4.4)
|
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin PowerPress Podcasting by Blubrry SQL Injection (6.0.2)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin PowerPress Podcasting by Blubrry Unspecified Vulnerability (8.6.1)
|
|
|
High
|
WordPress Plugin Power Zoomer Arbitrary File Upload (1.2)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Powie's WHOIS Domain Check Cross-Site Scripting (0.9.31)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Premium Addons for Elementor Cross-Site Scripting (3.7.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Premium Addons for Elementor Multiple Cross-Site Scripting Vulnerabilities (4.2.7)
|
CVE-2021-24257
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Premium Addons for Elementor Security Bypass (4.5.1)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Premium Blocks for Gutenberg Unspecified Vulnerability (1.7.4)
|
|
|
High
|
WordPress Plugin Premium SEO Pack Multiple Vulnerabilities (1.8.0)
|
CWE-434
CWE-538
|
CWE-434
CWE-538
|
High
|
WordPress Plugin Premium SEO Pack Security Bypass (1.9.1.3)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Premmerce Permalink Manager for WooCommerce Local File Inclusion (2.3.10)
|
CVE-2024-27971
CWE-22
|
CWE-22
|
High
|
WordPress Plugin Premmerce Product Filter for WooCommerce Security Bypass (3.1.2)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Premmerce Variation Swatches for WooCommerce Security Bypass (1.0)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Premmerce Wholesale Pricing for WooCommerce Security Bypass (1.1.3)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Premmerce Wishlist for WooCommerce Security Bypass (1.1.2)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Pressbooks Cross-Site Scripting (2.4.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Pressbooks Textbook Cross-Site Scripting (1.2.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PressForward Cross-Site Scripting (4.3.0)
|
CVE-2017-12948
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Prevent files/folders access Cross-Site Request Forgery (1.1.1)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Preview E-mails for WooCommerce Cross-Site Scripting (1.6.8)
|
CVE-2021-42363
CWE-79
|
CWE-79
|
High
|