Vulnerability Name CVE Severity
WordPress Plugin Live Product Editor for WooCommerce Security Bypass (4.6.2)
WordPress Plugin Live Scores for SportsPress Multiple Vulnerabilities (1.9.0)
WordPress Plugin Live Search for WooCommerce Security Bypass (2.0.2)
WordPress Plugin LiveSig 'wp-root' Parameter Remote File Include (0.4)
WordPress Plugin Loan Comparison Multiple Cross-Site Scripting Vulnerabilities (1.5.2) CVE-2023-0366 CVE-2023-0442
WordPress Plugin Localize My Post Local File Inclusion (1.0) CVE-2018-16299
WordPress Plugin Local Market Explorer 'api-key' Parameter Cross-Site Scripting (3.1.1)
WordPress Plugin Local Weather Cross-Site Scripting (1.0) CVE-2014-4561
WordPress Plugin Locations Cross-Site Request Forgery (3.2.1)
WordPress Plugin Location Weather Cross-Site Scripting (1.3.3) CVE-2023-0360
WordPress Plugin Locatoraid Store Locator Cross-Site Request Forgery (3.9.11) CVE-2023-25709
WordPress Plugin Lockdown WP Admin Unspecified Vulnerability (1.1.2)
WordPress Plugin Loco Translate Local File Inclusion (2.2.1)
WordPress Plugin Loco Translate PHP Code Injection (2.5.3) CVE-2021-24721
WordPress Plugin Loco Translate Unspecified Vulnerability (2.5.4)
WordPress Plugin Log Emails Information Disclosure (1.0.6)
WordPress Plugin Log HTTP Requests Cross-Site Scripting (1.3.1) CVE-2022-3402
WordPress Plugin Login/Signup Popup (Inline Form + Woocommerce) Cross-Site Request Forgery (2.2) CVE-2022-0215
WordPress Plugin Login/Signup Popup (Inline Form + Woocommerce) Cross-Site Scripting (1.4) CVE-2020-36715
WordPress Plugin Login/Signup Popup (Inline Form + Woocommerce) Security Bypass (2.7.2) CVE-2024-5324
WordPress Plugin LOGIN AND REGISTRATION ATTEMPTS LIMIT Cross-Site Request Forgery (2.1) CVE-2022-47138
WordPress Plugin Login as User or Customer Cross-Site Request Forgery (1.9)
WordPress Plugin Login as User or Customer Privilege Escalation (3.2) CVE-2022-4305
WordPress Plugin Login as User or Customer Security Bypass (1.7)
WordPress Plugin Login Block IPs Cross-Site Request Forgery (1.0.0) CVE-2022-3098
WordPress Plugin Login by Auth0 Cross-Site Scripting (3.11.2) CVE-2019-20173
WordPress Plugin Login by Auth0 Multiple Vulnerabilities (3.11.3) CVE-2020-5391 CVE-2020-5392 CVE-2020-6753 CVE-2020-7947 CVE-2020-7948
WordPress Plugin Loginizer Cross-Site Scripting (1.3.9) CVE-2018-11366
WordPress Plugin Loginizer Multiple Vulnerabilities (1.3.5) CVE-2017-12650 CVE-2017-12651
WordPress Plugin Loginizer SQL Injection (1.6.3) CVE-2020-27615
WordPress Plugin Login Logout Menu Cross-Site Scripting (1.3.3) CVE-2022-4622
WordPress Plugin Login Logout Menu Multiple Cross-Site Scripting Vulnerabilities (1.3.3) CVE-2022-4622 CVE-2022-4625
WordPress Plugin Login No Captcha reCAPTCHA Security Bypass (1.4.1)
WordPress Plugin Login No Captcha reCAPTCHA Security Bypass (1.6.11) CVE-2022-2913
WordPress Plugin Login or Logout Menu Item Security Bypass (1.1.1) CVE-2019-15820
WordPress Plugin Login rebuilder Cross-Site Request Forgery (1.1.3) CVE-2014-3882
WordPress Plugin Login Security Solution Multiple Unspecified Vulnerabilities (0.50.0)
WordPress Plugin Login Widget With Shortcode Cross-Site Request Forgery (3.1.1) CVE-2014-6312
WordPress Plugin Login With Ajax Cross-Site Request Forgery (3.0.4.1) CVE-2013-2707
WordPress Plugin Login With Ajax Cross-Site Scripting (3.0.4) CVE-2012-2759 CVE-2012-4283
WordPress Plugin Login With Ajax Cross-Site Scripting (3.1.6)
WordPress Plugin Login With Ajax Security Bypass (3.1.2)
WordPress Plugin Login with Azure (Azure SSO) Cross-Site Scripting (1.4.4)
WordPress Plugin Login with Cognito Cross-Site Scripting (1.4.3)
WordPress Plugin Login with Cognito Cross-Site Scripting (1.4.8) CVE-2022-4200
WordPress Plugin Login with phone number Cross-Site Scripting (1.4.1) CVE-2023-23492
WordPress Plugin Login with phone number Security Bypass (1.7.26) CVE-2024-5150
WordPress Plugin Logo Carousel Cross-Site Request Forgery (1.7.4)
WordPress Plugin Logo Carousel Cross-Site Scripting (1.7.1)
WordPress Plugin Logo Showcase with Slick Slider-Logo Carousel, Logo Slider & Logo Grid Cross-Site Request Forgery (2.0) CVE-2021-24913
WordPress Plugin Logo Showcase with Slick Slider-Logo Carousel, Logo Slider & Logo Grid Cross-Site Scripting (1.2.3) CVE-2021-24729
WordPress Plugin Logo Showcase with Slick Slider-Logo Carousel, Logo Slider & Logo Grid Security Bypass (1.2.4) CVE-2021-24730
WordPress Plugin Logo Slider and Showcase Security Bypass (1.3.36) CVE-2021-24742
WordPress Plugin LOGOSWARE SUITE Uploader Arbitrary File Upload (1.1.6)
WordPress Plugin M-vSlider SQL Injection (2.1.3) CVE-2021-24557
WordPress Plugin MAC PHOTO GALLERY 'albid' Parameter Arbitrary File Disclosure (2.8)
WordPress Plugin MAC PHOTO GALLERY 'macalbajax.php' Multiple Cross-Site Scripting Vulnerabilities (2.10)
WordPress Plugin MAC PHOTO GALLERY 'upload-file.php' Arbitrary File Upload (2.7)
WordPress Plugin MAC PHOTO GALLERY Arbitrary File Download (3.0)
WordPress Plugin MAC PHOTO GALLERY Multiple Security Bypass Vulnerabilities (3.0)
WordPress Plugin Magee Shortcodes Cross-Site Scripting (1.6.3)
WordPress Plugin Magic Fields 2 Cross-Site Scripting (2.3.2.4)
WordPress Plugin Magic Fields 2 Unspecified Vulnerability (2.3.2.2)
WordPress Plugin Magic Fields Arbitrary File Upload (1.6.3.2)
WordPress Plugin Magic Fields Cross-Site Scripting (1.7.1)
WordPress Plugin Magic Post Voice Cross-Site Scripting (1.2) CVE-2021-39315
WordPress Plugin Magn WP Drag and Drop Upload Arbitrary File Upload (1.1.4)
WordPress Plugin MailArchiver Cross-Site Scripting (2.10.1) CVE-2023-3136
WordPress Plugin MailChimp Forms by MailMunch Unspecified Vulnerability (2.0.6.3)
WordPress Plugin MailChimp for WooCommerce Local File Inclusion (2.1.1)
WordPress Plugin MailChimp List Subscribe Form Multiple Unspecified Vulnerabilities (1.1)
WordPress Plugin Mail Control-Email Customizer, SMTP Deliverability, logging, open and click Tracking Cross-Site Scripting (0.3.1) CVE-2023-3158
WordPress Plugin MailCWP Arbitrary File Upload (1.99) CVE-2015-1000000
WordPress Plugin MailCWP Arbitrary File Upload (1.100) CVE-2016-1000156
WordPress Plugin Mailing List 'dl.php' Arbitrary File Download (1.4.1)