Vulnerability Name |
CVE
CWE
|
CWE |
Severity |
WordPress Plugin Spotlight Cross-Site Scripting (4.7)
|
CVE-2014-4552
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spotlight Social Feeds [Block, Shortcode, and Widget] Cross-Site Scripting (1.4.2)
|
CVE-2023-0379
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spotlight Social Feeds [Block, Shortcode, and Widget] Security Bypass (0.10.1)
|
CWE-862
|
CWE-862
|
High
|
WordPress Plugin SP Project & Document Manager Arbitrary File Upload (4.21)
|
CVE-2021-24347
CWE-434
|
CWE-434
|
High
|
WordPress Plugin SP Project & Document Manager Arbitrary File Upload (4.22)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin SP Project & Document Manager Cross-Site Scripting (4.25)
|
CVE-2021-38315
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SP Project & Document Manager Multiple SQL Injection Vulnerabilities (2.4.3)
|
CVE-2014-9178
CWE-89
|
CWE-89
|
High
|
WordPress Plugin SP Project & Document Manager Multiple Vulnerabilities (2.5.9.7)
|
CWE-79
CWE-89
CWE-200
CWE-434
|
CWE-79
CWE-89
CWE-200
CWE-434
|
High
|
WordPress Plugin SP Project & Document Manager SQL Injection (2.5.3)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin SP Project & Document Manager Unspecified Vulnerability (2.5.7.3)
|
|
|
High
|
WordPress Plugin SP Project & Document Manager Unspecified Vulnerability (2.5.8.0)
|
|
|
High
|
WordPress Plugin SP Project & Document Manager Unspecified Vulnerability (2.6.2.5)
|
|
|
High
|
WordPress Plugin Spreadsheet (wpSS) 'ss_id' Parameter SQL Injection (0.61)
|
CVE-2008-1982
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Spreadsheet (wpSS) Cross-Site Scripting (0.62)
|
CVE-2014-8364
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spreadsheet (wpSS) SQL Injection (0.62)
|
CVE-2014-8363
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Spreadsheet Cross-Site Scripting (2.0)
|
CVE-2013-6281
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SP Rental Manager SQL Injection (1.5.3)
|
CVE-2021-38324
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Spryng Payments for WooCommerce Cross-Site Scripting (1.6.7)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Squeeze Arbitrary File Upload (1.4)
|
CVE-2024-35767
CWE-434
|
CWE-434
|
High
|
WordPress Plugin SrbTransLatin Multiple Vulnerabilities (1.46)
|
CVE-2018-5368
CVE-2018-5369
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin SRS Simple Hits Counter SQL Injection (1.0.4)
|
CVE-2020-5766
CWE-89
|
CWE-89
|
High
|
WordPress Plugin SS Downloads Cross-Site Request Forgery and Information Disclosure Vulnerabilities (1.4.3)
|
CWE-352
CWE-538
|
CWE-352
CWE-538
|
High
|
WordPress Plugin SS Downloads Multiple Cross-Site Scripting Vulnerabilities (1.4.4.1)
|
CVE-2014-4554
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SSL Insecure Content Fixer Information Disclosure (2.0.0)
|
CWE-200
|
CWE-200
|
High
|
WordPress Plugin SS Quiz Cross-Site Request Forgery and Access Security Bypass Vulnerabilities (1.11)
|
CWE-264
CWE-352
|
CWE-264
CWE-352
|
High
|
WordPress Plugin SS Quiz Multiple Unspecified Vulnerabilities (1.12)
|
|
|
High
|
WordPress Plugin St-Daily-Tip Cross-Site Request Forgery (4.7)
|
CVE-2021-24487
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Staff Directory-Employee Directory for WordPress Unspecified Vulnerability (3.6.1)
|
|
|
High
|
WordPress Plugin Staff Directory:Company Directory Cross-Site Request Forgery (3.6)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin StageShow Multiple Vulnerabilities (5.0.8)
|
CVE-2015-5461
CWE-79
CWE-352
CWE-601
|
CWE-79
CWE-352
CWE-601
|
High
|
WordPress Plugin Stallion WordPress SEO Cross-Site Scripting (2.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Starbox-the Author Box for Humans Cross-Site Scripting (3.0.8)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Starfish Review Generation & Marketing for WordPress Security Bypass (2.0.0)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Stars Menu Cross-Site Scripting (1.0.1)
|
CVE-2021-24435
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Starter Templates-Elementor, WordPress & Beaver Builder Templates Cross-Site Request Forgery (3.1.20)
|
CVE-2022-46851
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Starter Templates-Elementor, WordPress & Beaver Builder Templates Cross-Site Scripting (1.3.20)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Starter Templates-Elementor, WordPress & Beaver Builder Templates Security Bypass (2.7.0)
|
CVE-2021-42360
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Startklar Elementor Addons Arbitrary File Deletion (1.7.13)
|
CVE-2024-4346
CWE-73
|
CWE-73
|
High
|
WordPress Plugin Startklar Elementor Addons Arbitrary File Upload (1.7.13)
|
CVE-2024-4345
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Startklar Elementor Addons Directory Traversal (1.7.15)
|
CVE-2024-5153
CWE-22
|
CWE-22
|
High
|
WordPress Plugin Station Pro Cross-Site Scripting (2.2.1)
|
CVE-2021-24435
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Statistics Remote Code Execution (1.8)
|
CWE-94
|
CWE-94
|
High
|
WordPress Plugin StatPressCN 'wp-admin/admin.php' Multiple Cross-Site Scripting Vulnerabilities (1.9.0)
|
CVE-2011-0641
CWE-79
|
CWE-79
|
High
|
WordPress Plugin StatPress Cross-Site Scripting (1.2.9.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin StatPress Multiple Unspecified Vulnerabilities (1.4.1)
|
|
|
High
|
WordPress Plugin Stealth Login Page Unspecified Vulnerability (1.1.3)
|
|
|
High
|
WordPress Plugin Stetic Cross-Site Request Forgery (1.0.6)
|
CVE-2021-42364
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Sticky Ad Bar Cross-Site Scripting (1.3.1)
|
CVE-2023-25784
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Sticky Menu, Sticky Header (or anything!) on Scroll Cross-Site Request Forgery (2.2)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Sticky Menu on Scroll, Sticky Header, Sticky Welcome Bar for Any Theme-myStickymenu Unspecified Vulnerability (2.1.4)
|
|
|
High
|
WordPress Plugin Sticky Popup Cross-Site Scripting (1.2)
|
CVE-2022-1750
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Sticky Related Posts Cross-Site Scripting (1.0)
|
CVE-2021-24435
CWE-79
|
CWE-79
|
High
|
WordPress Plugin stm-megamenu Local File Inclusion (2.3.12)
|
CVE-2024-35677
CWE-22
|
CWE-22
|
High
|
WordPress Plugin Stockdio Historical Chart Cross-Site Scripting (2.7.2)
|
CVE-2020-28707
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Stock in & out Cross-Site Scripting (1.0.4)
|
CVE-2021-24346
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Stock in & out SQL Injection (1.0.4)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Stockists Manager for Woocommerce Cross-Site Request Forgery (1.0.2.1)
|
CVE-2022-2518
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Stock market charts from finviz Cross-Site Scripting (1.0)
|
CVE-2023-23809
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Stock Ticker Security Bypass (3.23.0)
|
CVE-2023-27626
CWE-284
|
CWE-284
|
High
|
WordPress Plugin Stop Spammers Security-Block Spam Users, Comments, Forms Cross-Site Scripting (6.15)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Stop Spammers Security-Block Spam Users, Comments, Forms Cross-Site Scripting (2021.8)
|
CVE-2021-24245
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Stop Spammers Security-Block Spam Users, Comments, Forms Cross-Site Scripting (2021.17)
|
CVE-2021-24517
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Stop User Enumeration Cross-Site Scripting (1.3.7)
|
CVE-2017-18536
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Stop User Enumeration Security Bypass (1.3.18)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Stop User Enumeration User Enumeration (1.2.4)
|
CWE-203
|
CWE-203
|
High
|
WordPress Plugin Stop User Enumeration User Enumeration (1.3.4)
|
CWE-203
|
CWE-203
|
High
|
WordPress Plugin Stop User Enumeration User Enumeration (1.3.8)
|
CWE-203
|
CWE-203
|
High
|
WordPress Plugin Storefront Footer Text Cross-Site Scripting (1.0.1)
|
CVE-2021-24607
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Store Locator for WordPress with Google Maps-LotsOfLocales Cross-Site Request Forgery (3.98.7)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Store Locator for WordPress with Google Maps-LotsOfLocales SQL Injection (3.11)
|
CVE-2014-8621
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Store Locator for WordPress with Google Maps-LotsOfLocales SQL Injection (3.33.1)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Store Locator Plus for WordPress Cross-Site Scripting (4.5.10)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Store Locator Plus for WordPress Cross-Site Scripting (5.5.15)
|
CVE-2021-24290
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Store Locator Plus for WordPress Multiple Vulnerabilities (3.0.1)
|
CWE-89
CWE-200
|
CWE-89
CWE-200
|
High
|
WordPress Plugin Store Locator Plus for WordPress Open Email Relay (4.2.25)
|
CWE-264
|
CWE-264
|
High
|