Vulnerability Name |
CVE
CWE
|
CWE |
Severity |
WordPress Plugin Subscriptions & Memberships for PayPal Unspecified Vulnerability (1.1.5)
|
|
|
High
|
WordPress Plugin Sucuri Security-Auditing, Malware Scanner and Security Hardening Cross-Site Scripting (1.7.15)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Sunshine Photo Cart Cross-Site Request Forgery (2.8.28)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Supafolio Multiple Unspecified Vulnerabilities (2.1.0)
|
|
|
High
|
WordPress Plugin Super CAPTCHA 'admin.php' SQL Injection (2.2.4)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Super Forms-Drag & Drop Form Builder Arbitrary File Upload (4.9.700)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Super Interactive Maps for WordPress Arbitrary File Upload (1.9)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Super Interactive Maps for WordPress SQL Injection (2.1)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Super Logos Showcase for WordPress Arbitrary File Upload (2.2)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Super Refer A Friend Information Disclosure (1.0)
|
CWE-200
|
CWE-200
|
High
|
WordPress Plugin Super Simple Custom CSS Cross-Site Scripting (1.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Super Store Finder for WordPress (Google Maps Store Locator) Arbitrary File Upload (6.1)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Super Store Finder for WordPress (Google Maps Store Locator) SQL Injection (6.3)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin SupportCandy Arbitrary File Upload (2.0.0)
|
CVE-2019-11223
CWE-434
|
CWE-434
|
High
|
WordPress Plugin SupportEzzy Ticket System Cross-Site Scripting (1.2.5)
|
CVE-2014-9179
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SupportFlow Multiple Cross-Site Scripting Vulnerabilities (0.6)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Support Ticket System By Phoeniixx Unspecified Vulnerability (2.7)
|
|
|
High
|
WordPress Plugin Support Ticket System Multiple SQL Injection Vulnerabilities (1.2)
|
CVE-2015-7670
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Survey Maker-Best WordPress Survey Cross-Site Scripting (2.0.6)
|
CVE-2021-26256
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Survey Maker-Best WordPress Survey Cross-Site Scripting (3.1.3)
|
CVE-2023-0038
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Survey Maker-Best WordPress Survey SQL Injection (1.5.5)
|
CVE-2021-24459
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Survey Maker-Best WordPress Survey SQL Injection (3.1.1)
|
CVE-2023-23490
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Survey Maker-Best WordPress Survey Unspecified Vulnerability (3.2.0)
|
|
|
High
|
WordPress Plugin Surveys SQL Injection (1.01.8)
|
CVE-2017-1002020
CVE-2017-1002021
CVE-2017-1002022
CWE-89
|
CWE-89
|
High
|
WordPress Plugin SVG Support Cross-Site Scripting (2.3.19)
|
CVE-2021-24686
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SVG Support Cross-Site Scripting (2.4.2)
|
CVE-2022-1755
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SVG Support Cross-Site Scripting (2.5.1)
|
CVE-2022-4022
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SW Ajax WooCommerce Search Cross-Site Scripting (1.2.6)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Swift Landing Page Cross-Site Request Forgery (1.1)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Swim Team Arbitrary File Download (1.44.1077)
|
CVE-2015-5471
CWE-22
|
CWE-22
|
High
|
WordPress Plugin Swipe Checkout for eShop Cross-Site Scripting (3.7.0)
|
CVE-2014-4556
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Swipe Checkout for Jigoshop Cross-Site Scripting (3.1.0)
|
CVE-2014-4557
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Swipe Checkout for WooCommerce Cross-Site Scripting (2.7.1)
|
CVE-2014-4558
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Swipe Checkout for WP e-Commerce Multiple Cross-Site Scripting Vulnerabilities (3.1.0)
|
CVE-2014-4559
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Swiss Toolkit For WP Security Bypass (1.0.7)
|
CVE-2024-5204
CWE-287
|
CWE-287
|
High
|
WordPress Plugin Swiss Toolkit For WP Security Bypass (1.0.8)
|
CWE-862
|
CWE-862
|
High
|
WordPress Plugin Symbiostock-Sell Photos Online For Free! Arbitrary File Upload (6.0.0)
|
CVE-2023-49814
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Synchi Arbitrary File Deletion (5.1)
|
CWE-73
|
CWE-73
|
High
|
WordPress Plugin Sync to Etsy Marketplace from WooCommerce Cross-Site Request Forgery (3.3.1)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Syndication Links Cross-Site Scripting (1.0.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SyntaxHighlighter Evolved Cross-Site Scripting (3.1.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SyntaxHighlighter Evolved Cross-Site Scripting (3.1.9)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin SyntaxHighlighter Evolved Cross-Site Scripting (3.5.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Table Maker Multiple Vulnerabilities (1.7)
|
CWE-89
CWE-915
|
CWE-89
CWE-915
|
High
|
WordPress Plugin TableOn-WordPress Posts Table Filterable Cross-Site Scripting (1.0.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin TablePress CSV Injection (1.9.2)
|
CVE-2019-20180
CWE-20
|
CWE-20
|
High
|
WordPress Plugin TablePress Unspecified Vulnerability (1.7)
|
|
|
High
|
WordPress Plugin TablePress XML External Entity Injection (1.8)
|
CVE-2017-10889
CWE-611
|
CWE-611
|
High
|
WordPress Plugin Tablesome-Responsive Table, Woocommerce Automation, Email Log, Form Automation-Contact Form 7, Elementor, WPForms, Forminator Cross-Site Request Forgery (1.0.25)
|
CVE-2024-31388
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Tablesome-Responsive Table, Woocommerce Automation, Email Log, Form Automation-Contact Form 7, Elementor, WPForms, Forminator Cross-Site Scripting (1.0.27)
|
CVE-2024-29110
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Tabs-Responsive Tabs with WooCommerce Product Tab Extension Cross-Site Scripting (3.7.1)
|
CVE-2022-40215
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Tabs-Responsive Tabs with WooCommerce Product Tab Extension Security Bypass (3.5.4)
|
CWE-862
|
CWE-862
|
High
|
WordPress Plugin Tabs-Responsive Tabs with WooCommerce Product Tab Extension Security Bypass (3.6.0)
|
CVE-2022-36375
CWE-863
|
CWE-863
|
High
|
WordPress Plugin Tabs Cross-Site Scripting (1.8.0)
|
CVE-2018-5312
CWE-79
|
CWE-79
|
High
|
WordPress Plugin TagNinja 'id' Parameter Cross-Site Scripting (1.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Tagregator Cross-Site Scripting (0.6)
|
CVE-2018-10752
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Tags Cloud Manager Cross-Site Scripting (1.0.0)
|
CVE-2023-28166
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Tajer Arbitrary File Upload (1.0.5)
|
CVE-2018-9206
CWE-434
|
CWE-434
|
High
|
WordPress Plugin TAKETIN To WP Membership PHP Object Injection (1.2.7)
|
CWE-915
|
CWE-915
|
High
|
WordPress Plugin TallyKit Cross-Site Scripting (5.4)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Tapfiliate Cross-Site Scripting (3.0.12)
|
CVE-2023-25789
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Target First Live chat Unspecified Vulnerability (1.0)
|
|
|
High
|
WordPress Plugin Task Manager Pro Multiple Vulnerabilities (1.3.1)
|
CWE-79
CWE-89
|
CWE-79
CWE-89
|
High
|
WordPress Plugin Tatsu Arbitrary File Upload (3.3.11)
|
CVE-2021-25094
CWE-434
|
CWE-434
|
High
|
WordPress Plugin TAuto Poster includes Backdoor [Only if downloaded via the vendor website] (1.4.5)
|
CVE-2021-24867
CWE-912
|
CWE-912
|
High
|
WordPress Plugin Taxonomy Converter Unspecified Vulnerability (1.1)
|
|
|
High
|
WordPress Plugin Taxonomy Images Multiple Unspecified Vulnerabilities (0.6)
|
|
|
High
|
WordPress Plugin TaxoPress-Create and Manage Taxonomies, Tags, Categories Cross-Site Scripting (3.0.7.1)
|
CVE-2021-24444
CWE-79
|
CWE-79
|
High
|
WordPress Plugin TC Custom JavaScript Cross-Site Scripting (1.2.1)
|
CVE-2020-14063
CWE-79
|
CWE-79
|
High
|
WordPress Plugin tcS3 Cross-Site Scripting (2.1.1)
|
CVE-2021-24435
CWE-79
|
CWE-79
|
High
|
WordPress Plugin TDO Mini Forms Arbitrary File Upload (0.13.9)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin teachPress Unspecified Vulnerability (5.0.17)
|
|
|
High
|
WordPress Plugin Teamleader CRM Forms Cross-Site Scripting (2.0.0)
|
CVE-2021-30134
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Team Members Cross-Site Scripting (5.0.3)
|
CVE-2021-24128
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Team Members Cross-Site Scripting (5.1.0)
|
CVE-2022-1568
CWE-79
|
CWE-79
|
High
|