Vulnerability Name |
CVE
CWE
|
CWE |
Severity |
WordPress Plugin Portfolio Gallery-Image Gallery Cross-Site Request Forgery (1.1.2)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Portfolio Gallery-Photo Gallery Cross-Site Scripting (1.5.7)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Portfolio Gallery-Photo Gallery Cross-Site Scripting (2.1.10)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Portfolio Gallery-Photo Gallery Cross-Site Scripting (2.2.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Portfolio Gallery-Photo Gallery Multiple Unspecified Vulnerabilities (2.0.72)
|
|
|
High
|
WordPress Plugin Portfolio Gallery-Photo Gallery Unspecified Vulnerability (2.3.0)
|
|
|
High
|
WordPress Plugin Portfolio Responsive Gallery SQL Injection (1.1.7)
|
CVE-2021-24457
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Portfolio Slideshow Cross-Site Scripting (1.13.0)
|
CVE-2023-23717
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Portrait-Archiv.com Photostore Cross-Site Scripting (3.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin post-views Cross-Site Scripting (2.6.1.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Connector Cross-Site Scripting (1.0.3)
|
CVE-2015-9362
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Content XMLRPC SQL Injection (1.0)
|
CVE-2021-24629
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Post Custom Templates Lite Cross-Site Scripting (1.6)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Duplicator Cross-Site Scripting (2.16)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Form-Registration Form-Profile Form for User Profiles and Content Forms for User Submissions Cross-Site Scripting (2.6.9)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Form-Registration Form-Profile Form for User Profiles and Content Forms for User Submissions Cross-Site Scripting (2.7.2)
|
CVE-2022-38971
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Form-Registration Form-Profile Form for User Profiles and Content Forms for User Submissions PHAR Deserialization (2.7.7)
|
CVE-2023-26326
CWE-502
|
CWE-502
|
High
|
WordPress Plugin Post Form-Registration Form-Profile Form for User Profiles and Content Forms for User Submissions Security Bypass (2.3.2)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Post Form-Registration Form-Profile Form for User Profiles and Content Forms for User Submissions Security Bypass (2.6.2)
|
CWE-862
|
CWE-862
|
High
|
WordPress Plugin Post Form-Registration Form-Profile Form for User Profiles and Content Forms for User Submissions SQL Injection (2.2.7)
|
CVE-2018-21003
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Post Grid, List for WordPress-Content Views Cross-Site Scripting (1.6.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Grid, List for WordPress-Content Views Cross-Site Scripting (1.9.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Grid, Post Carousel, & List Category Posts-by Smart Post Show Cross-Site Request Forgery (2.3.4)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post Grid Arbitrary File Deletion (2.0.12)
|
CWE-73
|
CWE-73
|
High
|
WordPress Plugin Post Grid Gutenberg Blocks and WordPress Blog-PostX Multiple Vulnerabilities (2.4.9)
|
CVE-2021-24652
CVE-2021-24659
CVE-2021-24660
CVE-2021-24661
CWE-79
CWE-264
|
CWE-79
CWE-264
|
High
|
WordPress Plugin Post Grid Gutenberg Blocks and WordPress Blog-PostX Security Bypass (4.1.2)
|
CVE-2024-5326
CWE-862
|
CWE-862
|
High
|
WordPress Plugin Post Grid Multiple Vulnerabilities (2.0.71)
|
CVE-2020-35936
CVE-2020-35938
CWE-79
CWE-915
|
CWE-79
CWE-915
|
High
|
WordPress Plugin Post Grid PHP Object Injection (2.0.11)
|
CWE-915
|
CWE-915
|
High
|
WordPress Plugin post highlights 'ph_settings.php' SQL Injection (2.2)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin post highlights Cross-Site Scripting (2.6)
|
CVE-2014-8087
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Postie 'From' Field Cross-Site Scripting (1.4.3)
|
CVE-2012-2580
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Postie Multiple Vulnerabilities (1.9.40)
|
CVE-2019-20203
CVE-2019-20204
CWE-79
CWE-264
|
CWE-79
CWE-264
|
High
|
WordPress Plugin Post Index Cross-Site Request Forgery (0.7.5)
|
CVE-2021-34637
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post Indexer (WPMU DEV) Multiple Vulnerabilities (3.0.6.1)
|
CWE-89
CWE-94
|
CWE-89
CWE-94
|
High
|
WordPress Plugin Post Lists View Custom Cross-Site Scripting (1.7.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Logo Cross-Site Scripting (1.1b)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PostmagThemes Demo Import Arbitrary File Upload (1.0.7)
|
CVE-2022-1540
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Postman SMTP Mailer/Email Log Cross-Site Scripting (2.0.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Postmatic-Post and comment subscriptions that invite you to hit reply Cross-Site Scripting (1.4.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Pay Counter PHP Object Injection (2.730)
|
CWE-915
|
CWE-915
|
High
|
WordPress Plugin Post PDF Export Local File Inclusion (1.0.1)
|
CVE-2014-2383
CWE-22
|
CWE-22
|
High
|
WordPress Plugin Post Recommendations for WordPress 'api.php' Remote File Include (1.1.2)
|
CWE-94
|
CWE-94
|
High
|
WordPress Plugin Posts in Page Local File Inclusion (1.2.4)
|
CWE-22
|
CWE-22
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Request Forgery (2.0.2)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Request Forgery (2.0.20)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (1.7.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (2.1.3)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (2.5.7)
|
CVE-2023-3082
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (2.7.0)
|
CVE-2023-5958
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (2.8.6)
|
CVE-2023-6629
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Cross-Site Scripting (2.8.7)
|
CVE-2023-7027
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Multiple Cross-Site Request Forgery Vulnerabilities (2.5.6)
|
CVE-2023-3178
CVE-2023-3179
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Security Bypass (2.8.7)
|
CVE-2023-6875
CWE-862
|
CWE-862
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark Server-Side Request Forgery (2.1.6)
|
CVE-2022-2352
CWE-918
|
CWE-918
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark SQL Injection (2.8.6)
|
CVE-2023-6620
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Post SMTP-WP SMTP with Email Logs & Mobile App for Failure Alerts-Any SMTP Plus Gmail SMTP, Office 365, Brevo, Mailgun, Amazon SES, Postmark SQL Injection (2.9.3)
|
CVE-2024-5207
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Post Snippets Security Bypass (3.0.5)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Post Thumbnail Editor Multiple Cross-Site Request Forgery Vulnerabilities (2.4.1)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post Title Counter Cross-Site Scripting (1.1)
|
CVE-2021-38326
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post to CSV by BestWebSoft Cross-Site Scripting (1.3.0)
|
CVE-2017-2171
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post to CSV by BestWebSoft CSV Injection (1.4.0)
|
CVE-2022-3393
CWE-1236
|
CWE-1236
|
High
|
WordPress Plugin Post to Social Media-WordPress to Hootsuite Cross-Site Scripting (1.3.8)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post to Twitter Cross-Site Request Forgery (0.7)
|
CVE-2014-9393
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Post Type Switcher Multiple Unspecified Vulnerabilities (1.5.0)
|
|
|
High
|
WordPress Plugin Post video players, slideshow albums, photo galleries and music/podcast playlist Cross-Site Scripting (1.136)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Views Count (Support caching plugins!) Cross-Site Scripting (3.0.2)
|
CVE-2022-4761
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Post Views Counter Cross-Site Scripting (1.3.4)
|
CVE-2021-24613
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Power Charts-Responsive Beautiful Charts & Graphs Cross-Site Scripting (0.1.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Powerhouse Museum Collection Image Grid 'tbpv_username' Parameter Cross-Site Scripting (0.9.1.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPack Addons for Elementor Multiple Cross-Site Scripting Vulnerabilities (2.3.1)
|
CVE-2021-24263
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPack for Beaver Builder Privilege Escalation (2.33.0)
|
CVE-2024-39633
CWE-269
|
CWE-269
|
High
|
WordPress Plugin PowerPack Lite for Beaver Builder Cross-Site Scripting (1.2.9.2)
|
CVE-2022-0176
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPack Lite for Beaver Builder Cross-Site Scripting (1.3.0)
|
CVE-2024-2289
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPack Lite for Beaver Builder Cross-Site Scripting (1.3.0.4)
|
CVE-2024-37409
CWE-79
|
CWE-79
|
High
|
WordPress Plugin PowerPack Lite for Beaver Builder Local File Inclusion (1.3.0.3)
|
CVE-2024-37410
CWE-22
|
CWE-22
|
High
|