Vulnerability Name CVE Severity
WordPress Plugin Multicons [Multiple Favicons] Cross-Site Scripting (2.1)
WordPress Plugin Multi Feed Reader Multiple Vulnerabilities (2.2.4)
WordPress Plugin Multi Feed Reader SQL Injection (2.2.3) CVE-2017-2195
WordPress Plugin Multilanguage by BestWebSoft Cross-Site Scripting (1.2.1) CVE-2017-2171
WordPress Plugin multimedial images SQL Injection (1.0b) CVE-2022-4370
WordPress Plugin Multiplayer Games Cross-Site Scripting (3.7) CVE-2021-34644
WordPress Plugin Multiple Domain Cross-Site Scripting (1.0.2)
WordPress Plugin Multiple Page Generator-MPG Cross-Site Request Forgery (3.3.9) CVE-2022-47143
WordPress Plugin Multiple Roles Cross-Site Request Forgery (1.3.1)
WordPress Plugin Multi Plugin Installer Arbitrary File Disclosure (1.1.0)
WordPress Plugin Multi Rating Multiple Unspecified Vulnerabilities (3.2.1)
WordPress Plugin Multi Rating Multiple Vulnerabilities (5.0.5) CVE-2022-47433 CVE-2022-47443
WordPress Plugin multi Scheduler Cross-Site Request Forgery (1.0.0)
WordPress Plugin Multisite Global Search 'mssearch' Parameter Cross-Site Scripting (1.2.5)
WordPress Plugin Multisite Plugin Manager Multiple Cross-Site Scripting Vulnerabilities (3.1.1)
WordPress Plugin Multisite Post Duplicator Cross-Site Request Forgery (0.9.5.1)
WordPress Plugin Multi Step Form Multiple Cross-Site Scripting Vulnerabilities (1.2.5) CVE-2018-14430 CVE-2018-14846
WordPress Plugin Multivendor Marketplace Solution for WooCommerce-WC Marketplace Cross-Site Request Forgery (3.5.7)
WordPress Plugin Multivendor Marketplace Solution for WooCommerce-WC Marketplace Cross-Site Request Forgery (3.7.3)
WordPress Plugin Multivendor Marketplace Solution for WooCommerce-WC Marketplace Unspecified Vulnerability (2.1.2)
WordPress Plugin Music Store Cross-Site Scripting (1.0.41)
WordPress Plugin Music Store Cross-Site Scripting (1.0.52)
WordPress Plugin Music Store Open Redirect (1.0.14)
WordPress Plugin Music Store Unspecified Vulnerability (1.0.20)
WordPress Plugin MWB Point of Sale (POS) for WooCommerce-Generate Barcodes, Process your Bills, Synchronize, Your Online-Offline Orders Cross-Site Request Forgery (1.0.0)
WordPress Plugin MW Font Changer Cross-Site Scripting (4.2.5) CVE-2016-1000142
WordPress Plugin MW WP Form Arbitrary File Deletion (5.0.3) CVE-2023-6559
WordPress Plugin MW WP Form Arbitrary File Upload (5.0.1) CVE-2023-6316
WordPress Plugin MW WP Form Cross-Site Scripting (1.7.1)
WordPress Plugin MW WP Form Cross-Site Scripting (2.10.0)
WordPress Plugin MW WP Form Cross-Site Scripting (5.0.6) CVE-2024-24804
WordPress Plugin MW WP Form Directory Traversal (4.4.2) CVE-2023-28408
WordPress Plugin MW WP Form Security Bypass (4.4.5) CVE-2023-46206
WordPress Plugin MX Time Zone Clocks Cross-Site Scripting (3.4) CVE-2021-24671
WordPress Plugin MyBB Cross-Poster Cross-Site Scripting (1.0) CVE-2021-39338
WordPress Plugin MyBlogU Cross-Site Scripting (0.0.7)
WordPress Plugin MyBookTable Bookstore by Author Media Cross-Site Scripting (3.2.1)
WordPress Plugin MyBookTable Bookstore by Author Media Unspecified Vulnerability (2.1.4)
WordPress Plugin My Calendar Cross-Site Scripting (2.3.28)
WordPress Plugin My Calendar Cross-Site Scripting (2.4.18)
WordPress Plugin My Calendar Cross-Site Scripting (2.5.16)
WordPress Plugin My Calendar Cross-Site Scripting (3.1.9) CVE-2019-15713
WordPress Plugin My Calendar Cross-Site Scripting (3.2.17) CVE-2021-24927
WordPress Plugin My Calendar Multiple Cross-Site Scripting Vulnerabilities (1.10.1) CVE-2012-6527
WordPress Plugin My Calendar Multiple Cross-Site Scripting Vulnerabilities (2.3.9)
WordPress Plugin My Calendar Multiple Vulnerabilities (2.3.29)
WordPress Plugin My Category Order 'parentID' Parameter SQL Injection (2.8) CVE-2009-4748
WordPress Plugin My Category Order Cross-Site Scripting (4.3)
WordPress Plugin My Chatbot Cross-Site Scripting (1.1)
WordPress Plugin myCred-Points, Rewards, Gamification, Ranks, Badges & Loyalty Cross-Site Scripting (2.3.2) CVE-2021-25015
WordPress Plugin myCred-Points, Rewards, Gamification, Ranks, Badges & Loyalty SQL Injection (2.2) CVE-2021-24755
WordPress Plugin myEASYbackup 'dwn_file' Parameter Directory Traversal (1.0.8.1) CVE-2012-0898
WordPress Plugin myFlash Remote File Include (1.10) CVE-2007-2485
WordPress Plugin Myftp SQL Injection (2.0)
WordPress Plugin myGallery Remote File Include (1.4b4) CVE-2007-2426
WordPress Plugin myghpay WooCommerce Payment Gateway Cross-Site Scripting (3.0) CVE-2021-39308
WordPress Plugin My Link Order Cross-Site Scripting (4.3)
WordPress Plugin myLinksDump 'url' Parameter SQL Injection (1.2) CVE-2010-2924
WordPress Plugin MyLiveChat-Free Live Chat Plugin for WordPress Cross-Site Scripting (2.0.1)
WordPress Plugin My Page Order Cross-Site Scripting (4.3)
WordPress Plugin MyPixs Local File Inclusion (0.3) CVE-2015-1000012
WordPress Plugin My Site Audit Cross-Site Scripting (1.2.4) CVE-2021-24445
WordPress Plugin mySTAT 'mystat.php' SQL Injection (2.6)
WordPress Plugin MyThemeShop Theme/Plugin Updater Cross-Site Scripting (1.2.3)
WordPress Plugin My Tickets Cross-Site Request Forgery (1.9.10) CVE-2022-47440
WordPress Plugin My Tickets Cross-Site Scripting (1.5.0)
WordPress Plugin My Tickets Cross-Site Scripting (1.8.30) CVE-2021-24796
WordPress Plugin My Tickets Security Bypass (1.9.11) CVE-2023-23988
WordPress Plugin myTreasures Cross-Site Scripting (2.4.10)
WordPress Plugin mywebcounter Cross-Site Scripting (1.1)
WordPress Plugin My Wish List Cross-Site Scripting (1.4.1)
WordPress Plugin My WordPress Login Logo Multiple Unspecified Vulnerabilities (2.1)
WordPress Plugin My WP Translate Multiple Vulnerabilities (1.0.3)
WordPress Plugin Mz-jajak 'id' Parameter SQL Injection (2.1)
WordPress Plugin N-Media Post Front-end Form Arbitrary File Upload (1.0)