Vulnerability Name |
CVE
CWE
|
CWE |
Severity |
WordPress Plugin Spam Free WordPress Security Bypass (1.9.2)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk Cross-Site Scripting (5.21)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk Cross-Site Scripting (5.113)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk Cross-Site Scripting (5.127.3)
|
CVE-2019-17515
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk Cross-Site Scripting (5.136.3)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk Cross-Site Scripting (5.154)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk Multiple Cross-Site Scripting Vulnerabilities (5.173)
|
CVE-2022-28221
CVE-2022-28222
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk SQL Injection (5.148)
|
CVE-2021-24131
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk SQL Injection (5.153.3)
|
CVE-2021-24295
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Spam protection, AntiSpam, FireWall by CleanTalk SQL Injection (5.185)
|
CVE-2022-3302
CWE-89
|
CWE-89
|
High
|
WordPress Plugin SpamTask Arbitrary File Upload (1.3.6)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin SpeakOut! Email Petitions Cross-Site Scripting (2.13.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Special Text Boxes Arbitrary File Upload (5.1.90)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Special Text Boxes Unspecified Vulnerability (5.5.102)
|
|
|
High
|
WordPress Plugin Spectra-WordPress Gutenberg Blocks Cross-Site Scripting (1.14.11)
|
CVE-2020-36656
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spectra-WordPress Gutenberg Blocks Cross-Site Scripting (1.25.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spectra-WordPress Gutenberg Blocks Multiple Security Bypass Vulnerabilities (2.3.0)
|
CVE-2023-23729
CVE-2023-23730
CVE-2023-23735
CVE-2023-23738
CVE-2023-23825
CVE-2023-23834
CWE-284
|
CWE-284
|
High
|
WordPress Plugin Spectra-WordPress Gutenberg Blocks Security Bypass (1.14.7)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Spellchecker 'general.php' Local and Remote File Include Vulnerabilities (3.1)
|
CWE-22
CWE-94
|
CWE-22
CWE-94
|
High
|
WordPress Plugin Spicy Blogroll Local File Include (1.0.0)
|
CWE-22
|
CWE-22
|
High
|
WordPress Plugin spideranalyse Cross-Site Scripting (0.0.1)
|
CVE-2021-38350
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spider Calendar Cross-Site Scripting (1.1.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spider Calendar Cross-Site Scripting and SQL Injection Vulnerabilities (1.0.1)
|
CWE-79
CWE-89
|
CWE-79
CWE-89
|
High
|
WordPress Plugin SpiderCatalog 's_p_c_t' Parameter Multiple Cross-Site Scripting Vulnerabilities (1.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SpiderCatalog Multiple Cross-Site Scripting and SQL Injection Vulnerabilities (1.4.6)
|
CWE-79
CWE-89
|
CWE-79
CWE-89
|
High
|
WordPress Plugin SpiderCatalog SQL Injection (1.7.3)
|
CVE-2021-24625
CWE-89
|
CWE-89
|
High
|
WordPress Plugin SpiderCatalog Unspecified Vulnerability (1.6.8)
|
|
|
High
|
WordPress Plugin Spider FAQ Cross-Site Scripting (1.0.4)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spiffy Calendar Cross-Site Scripting (3.2.0)
|
CVE-2017-9420
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spiffy Calendar Security Bypass (4.9.10)
|
CVE-2024-30528
CWE-862
|
CWE-862
|
High
|
WordPress Plugin Spiffy Calendar SQL Injection (4.9.11)
|
CVE-2024-38692
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Spiffy XSPF Player SQL Injection (0.1)
|
CVE-2013-3530
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Splash Header Cross-Site Scripting (1.20.7)
|
CVE-2021-24587
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Splashing Images Multiple Vulnerabilities (2.1)
|
CVE-2018-6194
CVE-2018-6195
CWE-79
CWE-915
|
CWE-79
CWE-915
|
High
|
WordPress Plugin SPNbabble Cross-Site Request Forgery (1.4.1)
|
CVE-2014-9339
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Sponsors Carousel Cross-Site Scripting (4.02)
|
CVE-2023-23808
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SportsPress-Sports Club & League Manager Cross-Site Scripting (2.7.1)
|
CVE-2020-13892
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Sports Rankings and Lists Cross-Site Scripting (3.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spot.IM Comments Cross-Site Scripting (4.0.3)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spotlight Cross-Site Scripting (4.7)
|
CVE-2014-4552
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spotlight Social Feeds [Block, Shortcode, and Widget] Cross-Site Scripting (1.4.2)
|
CVE-2023-0379
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spotlight Social Feeds [Block, Shortcode, and Widget] Security Bypass (0.10.1)
|
CWE-862
|
CWE-862
|
High
|
WordPress Plugin SP Project & Document Manager Arbitrary File Upload (4.21)
|
CVE-2021-24347
CWE-434
|
CWE-434
|
High
|
WordPress Plugin SP Project & Document Manager Arbitrary File Upload (4.22)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin SP Project & Document Manager Cross-Site Scripting (4.25)
|
CVE-2021-38315
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SP Project & Document Manager Multiple SQL Injection Vulnerabilities (2.4.3)
|
CVE-2014-9178
CWE-89
|
CWE-89
|
High
|
WordPress Plugin SP Project & Document Manager Multiple Vulnerabilities (2.5.9.7)
|
CWE-79
CWE-89
CWE-200
CWE-434
|
CWE-79
CWE-89
CWE-200
CWE-434
|
High
|
WordPress Plugin SP Project & Document Manager SQL Injection (2.5.3)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin SP Project & Document Manager Unspecified Vulnerability (2.5.7.3)
|
|
|
High
|
WordPress Plugin SP Project & Document Manager Unspecified Vulnerability (2.5.8.0)
|
|
|
High
|
WordPress Plugin SP Project & Document Manager Unspecified Vulnerability (2.6.2.5)
|
|
|
High
|
WordPress Plugin Spreadsheet (wpSS) 'ss_id' Parameter SQL Injection (0.61)
|
CVE-2008-1982
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Spreadsheet (wpSS) Cross-Site Scripting (0.62)
|
CVE-2014-8364
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Spreadsheet (wpSS) SQL Injection (0.62)
|
CVE-2014-8363
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Spreadsheet Cross-Site Scripting (2.0)
|
CVE-2013-6281
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SP Rental Manager SQL Injection (1.5.3)
|
CVE-2021-38324
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Spryng Payments for WooCommerce Cross-Site Scripting (1.6.7)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Squeeze Arbitrary File Upload (1.4)
|
CVE-2024-35767
CWE-434
|
CWE-434
|
High
|
WordPress Plugin SrbTransLatin Multiple Vulnerabilities (1.46)
|
CVE-2018-5368
CVE-2018-5369
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin SRS Simple Hits Counter SQL Injection (1.0.4)
|
CVE-2020-5766
CWE-89
|
CWE-89
|
High
|
WordPress Plugin SS Downloads Cross-Site Request Forgery and Information Disclosure Vulnerabilities (1.4.3)
|
CWE-352
CWE-538
|
CWE-352
CWE-538
|
High
|
WordPress Plugin SS Downloads Multiple Cross-Site Scripting Vulnerabilities (1.4.4.1)
|
CVE-2014-4554
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SSL Insecure Content Fixer Information Disclosure (2.0.0)
|
CWE-200
|
CWE-200
|
High
|
WordPress Plugin SS Quiz Cross-Site Request Forgery and Access Security Bypass Vulnerabilities (1.11)
|
CWE-264
CWE-352
|
CWE-264
CWE-352
|
High
|
WordPress Plugin SS Quiz Multiple Unspecified Vulnerabilities (1.12)
|
|
|
High
|
WordPress Plugin St-Daily-Tip Cross-Site Request Forgery (4.7)
|
CVE-2021-24487
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Staff Directory-Employee Directory for WordPress Unspecified Vulnerability (3.6.1)
|
|
|
High
|
WordPress Plugin Staff Directory:Company Directory Cross-Site Request Forgery (3.6)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin StageShow Multiple Vulnerabilities (5.0.8)
|
CVE-2015-5461
CWE-79
CWE-352
CWE-601
|
CWE-79
CWE-352
CWE-601
|
High
|
WordPress Plugin Stallion WordPress SEO Cross-Site Scripting (2.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Starbox-the Author Box for Humans Cross-Site Scripting (3.0.8)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Starfish Review Generation & Marketing for WordPress Security Bypass (2.0.0)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Stars Menu Cross-Site Scripting (1.0.1)
|
CVE-2021-24435
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Starter Templates-Elementor, WordPress & Beaver Builder Templates Cross-Site Request Forgery (3.1.20)
|
CVE-2022-46851
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Starter Templates-Elementor, WordPress & Beaver Builder Templates Cross-Site Scripting (1.3.20)
|
CWE-79
|
CWE-79
|
High
|