Vulnerability Name |
CVE
CWE
|
CWE |
Severity |
WordPress Plugin WP Popup Builder-Popup Forms, Marketing PoPuP & Newsletter Multiple Vulnerabilities (1.2.8)
|
CVE-2022-2404
CVE-2022-2405
CWE-79
CWE-862
|
CWE-79
CWE-862
|
High
|
WordPress Plugin WP Popup Lite-Responsive popup for WordPress includes Backdoor [Only if downloaded via the vendor website] (1.0.8)
|
CVE-2021-24867
CWE-912
|
CWE-912
|
High
|
WordPress Plugin WP Popups-WordPress Popup builder Cross-Site Scripting (2.1.4.6)
|
CVE-2022-4716
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Portfolio Gallery Cross-Site Scripting (1.0.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Post Page Clone SQL Injection (1.0)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP Post Popup Directory Traversal (2.0)
|
CWE-22
|
CWE-22
|
High
|
WordPress Plugin WP Post Popup Directory Traversal (2.1.1)
|
CWE-22
|
CWE-22
|
High
|
WordPress Plugin WP Post Rating Security Bypass (2.4.6)
|
CVE-2023-25785
CWE-862
|
CWE-862
|
High
|
WordPress Plugin WP Posts Carousel Cross-Site Scripting (1.3.6)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Post to PDF Cross-Site Scripting (2.3.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Post to PDF Enhanced Cross-Site Scripting (1.0.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Prayer Cross-Site Request Forgery (1.5.4)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Prayer Cross-Site Scripting (1.6.1)
|
CVE-2021-24313
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Prayer Cross-Site Scripting (1.9.6)
|
CVE-2023-25705
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Prayer Multiple Cross-Site Request Forgery Vulnerabilities (1.6.5)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Print Friendly Cross-Site Scripting (0.6)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Print Friendly Security Bypass (0.5.2)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP Private Content Plus Cross-Site Request Forgery (3.1)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Private Content Plus Security Bypass (1.31)
|
CVE-2019-15816
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP Private Message Insecure Direct Object Reference (1.0.5)
|
CVE-2023-0453
CWE-639
|
CWE-639
|
High
|
WordPress Plugin WP Private Messages SQL Injection (1.0.1)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP PRO Advertising System-All In One Ad Manager SQL Injection (4.6.18)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP Product Review Lite Cross-Site Scripting (3.7.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Product Review Lite Unspecified Vulnerability (3.7.6)
|
|
|
High
|
WordPress Plugin WP Project Manager-Task, team, and project management featuring kanban board and gantt charts Cross-Site Request Forgery (2.4.0)
|
CVE-2020-36745
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Project Manager-Task, team, and project management featuring kanban board and gantt charts Cross-Site Request Forgery (2.4.9)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Project Manager-Task, team, and project management featuring kanban board and gantt charts Cross-Site Scripting (2.4.13)
|
CVE-2021-36826
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Project Manager-Task, team, and project management featuring kanban board and gantt charts Privilege Escalation (2.6.4)
|
CVE-2023-3636
CWE-269
|
CWE-269
|
High
|
WordPress Plugin WP Publication Archive 'file' Parameter Directory Traversal (2.3)
|
CWE-22
|
CWE-22
|
High
|
WordPress Plugin WpPygments Multiple Cross-Site Scripting Vulnerabilities (0.3.2)
|
CVE-2013-1808
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WPQA-Builder forms Addon For WordPress Insecure Direct Object Reference (5.9.2)
|
CVE-2022-3343
CWE-639
|
CWE-639
|
High
|
WordPress Plugin WP Quick Booking Manager Cross-Site Scripting (1.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Quick FrontEnd Editor Multiple Vulnerabilities (5.5)
|
CWE-79
CWE-264
|
CWE-79
CWE-264
|
High
|
WordPress Plugin WP Reactions Lite Cross-Site Scripting (1.3.5)
|
CVE-2021-24723
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Real Estate Unspecified Vulnerability (2.0)
|
|
|
High
|
WordPress Plugin WP Realtime Sitemap Multiple Unspecified Vulnerabilities (1.5.5)
|
|
|
High
|
WordPress Plugin WP Reroute Email Cross-Site Request Forgery (1.4.6)
|
CVE-2023-27606
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Reroute Email Cross-Site Scripting (1.4.9)
|
CVE-2023-3168
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Reroute Email SQL Injection (1.4.6)
|
CVE-2023-27605
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP Reset-Most Advanced WordPress Reset Tool Cross-Site Scripting (1.86)
|
CVE-2021-24424
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Responsive Tabs horizontal vertical and accordion Tabs Unspecified Vulnerability (1.1.1)
|
|
|
High
|
WordPress Plugin WP Responsive Testimonials Slider And Widget Cross-Site Scripting (1.5)
|
CVE-2022-4750
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP REST API (WP API) Cross-Site Request Forgery (1.1)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP REST API (WP API) Cross-Site Scripting (1.2.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP REST API (WP API) Information Disclosure (1.2)
|
CWE-200
|
CWE-200
|
High
|
WordPress Plugin WP REST API (WP API) Security Bypass (1.2.1)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP Retina 2x Cross-Site Scripting (5.2.0)
|
CVE-2018-0511
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Review Multiple Unspecified Vulnerabilities (2.0)
|
|
|
High
|
WordPress Plugin WP Review Slider SQL Injection (10.9)
|
CVE-2022-0383
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP Review Slider SQL Injection (12.1)
|
CVE-2023-0260
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP Review Unspecified Vulnerability (5.2.1)
|
|
|
High
|
WordPress Plugin WP Rocket Local File Inclusion (2.10.3)
|
CVE-2017-11658
CWE-22
|
CWE-22
|
High
|
WordPress Plugin WP Rollback Multiple Vulnerabilities (1.2.2)
|
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin WP RSS Aggregator-News Feeds, Autoblogging, Youtube Video Feeds and More Cross-Site Scripting (4.19.1)
|
CVE-2021-24768
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP RSS Aggregator-News Feeds, Autoblogging, Youtube Video Feeds and More Cross-Site Scripting (4.19.2)
|
CVE-2021-24988
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP RSS Aggregator-News Feeds, Autoblogging, Youtube Video Feeds and More Cross-Site Scripting (4.19.3)
|
CVE-2022-0189
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP RSS Aggregator-News Feeds, Autoblogging, Youtube Video Feeds and More Multiple Unspecified Vulnerabilities (4.6.8)
|
|
|
High
|
WordPress Plugin WP RSS Aggregator-News Feeds, Autoblogging, Youtube Video Feeds and More Security Bypass (4.6.3)
|
CVE-2014-9314
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP RSS Aggregator-News Feeds, Autoblogging, Youtube Video Feeds and More Unspecified Vulnerability (4.8.2)
|
|
|
High
|
WordPress Plugin WP RSS By Publishers Multiple SQL Injection Vulnerabilities (0.1)
|
CVE-2022-4358
CVE-2022-4359
CVE-2022-4360
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP RSS Multi Importer Multiple Cross-Site Request Forgery Vulnerabilities (3.11)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP RSS Multi Importer Multiple Vulnerabilities (3.15)
|
CWE-79
CWE-89
|
CWE-79
CWE-89
|
High
|
WordPress Plugin WP Rss Poster SQL Injection (1.0.0)
|
CVE-2014-4938
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP Safe Search 'v1' Parameter Cross-Site Scripting (0.7)
|
CVE-2010-4518
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WPS Bidouille Multiple Vulnerabilities (1.12.2)
|
CWE-79
CWE-352
CWE-434
|
CWE-79
CWE-352
CWE-434
|
High
|
WordPress Plugin WPS Child Theme Generator Directory Traversal (1.1)
|
CVE-2019-15822
CWE-22
|
CWE-22
|
High
|
WordPress Plugin WPS Cleaner Multiple Cross-Site Request Forgery Vulnerabilities (1.4.4)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Scrippets Cross-Site Scripting (1.5.1)
|
CVE-2021-38333
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Security Question Cross-Site Request Forgery (1.0.5)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Security Safe Cross-Site Request Forgery (2.2.2)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Selected Text Sharer Multiple Vulnerabilities (1.0)
|
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin WP SEO Redirect 301 Cross-Site Request Forgery (2.3.1)
|
CVE-2021-24832
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP SEO Tags Cross-Site Scripting (2.2.7)
|
CVE-2021-34665
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP SEO TDK Security Bypass (2.0.2)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP Server Health Stats Cross-Site Scripting (1.6.10)
|
CVE-2022-2887
CWE-79
|
CWE-79
|
High
|