Vulnerability Name |
CVE
CWE
|
CWE |
Severity |
WordPress Plugin Wordpress Poll SQL Injection (36)
|
CVE-2020-24315
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WordPress Popular Posts Cross-Site Scripting (3.3.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Popular Posts Cross-Site Scripting (5.3.3)
|
CVE-2021-36872
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Popular Posts Cross-Site Scripting (5.3.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Popular Posts Multiple Vulnerabilities (5.3.2)
|
CVE-2021-20746
CVE-2021-42362
CWE-79
CWE-94
|
CWE-79
CWE-94
|
High
|
WordPress Plugin WordPress Popular Posts TimThumb Arbitrary File Upload (2.1.4)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin WordPress Popups for Marketing and Email Newsletters, Lead Generation and Conversions by OptinMonster Cross-Site Scripting (2.6.0)
|
CVE-2021-39325
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Popups for Marketing and Email Newsletters, Lead Generation and Conversions by OptinMonster Security Bypass (1.1.4.5)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WordPress Popups for Marketing and Email Newsletters, Lead Generation and Conversions by OptinMonster Security Bypass (2.6.4)
|
CVE-2021-39341
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WordPress Portfolio and Gallery-GridKit Gallery Unspecified Vulnerability (1.8.18)
|
|
|
High
|
WordPress Plugin WordPress prettyPhoto Cross-Site Scripting (1.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Related Posts Cross-Site Request Forgery (2.6.1)
|
CVE-2013-3476
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WordPress Related Posts Cross-Site Scripting (3.6.4)
|
CVE-2021-24211
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress renaming tool by Vlajo Arbitrary File Download (1.0)
|
CVE-2015-4703
CWE-538
|
CWE-538
|
High
|
WordPress Plugin WordPress Responsive Preview Cross-Site Scripting (1.1)
|
CVE-2014-4594
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Robots.txt optimization (+ XML Sitemap)-Website traffic, SEO & ranking Booster Cross-Site Request Forgery (1.4.5)
|
CVE-2023-25706
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WordPress Robots.txt optimization (+ XML Sitemap)-Website traffic, SEO & ranking Booster Security Bypass (1.2.5.1)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WordPress Robots.txt optimization (+ XML Sitemap)-Website traffic, SEO & ranking Booster Security Bypass (1.4.3)
|
CWE-862
|
CWE-862
|
High
|
WordPress Plugin WordPress Sentinel Multiple Vulnerabilities (1.0.0)
|
CVE-2011-5224
CVE-2011-5225
CVE-2011-5226
CWE-79
CWE-89
CWE-352
|
CWE-79
CWE-89
CWE-352
|
High
|
WordPress Plugin WordPress Shortcodes-Shortcodes Ultimate Cross-Site Scripting (5.0.6)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Shortcodes-Shortcodes Ultimate Cross-Site Scripting (5.10.1)
|
CVE-2021-24525
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Shortcodes-Shortcodes Ultimate Directory Traversal (4.9.9)
|
CVE-2017-2245
CWE-22
|
CWE-22
|
High
|
WordPress Plugin WordPress Shortcodes-Shortcodes Ultimate Multiple Vulnerabilities (4.9.3)
|
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin WordPress Shortcodes-Shortcodes Ultimate Remote Code Execution (5.0.0)
|
CWE-94
|
CWE-94
|
High
|
WordPress Plugin WordPress Shortcodes-Shortcodes Ultimate Unspecified Vulnerability (4.10.2)
|
|
|
High
|
WordPress Plugin WordPress Simple Ecommerce Shopping Cart-Sell products through Paypal Arbitrary File Upload (2.2.5)
|
CVE-2021-24620
CWE-434
|
CWE-434
|
High
|
WordPress Plugin WordPress Simple Shop Cross-Site Scripting (1.2)
|
CVE-2021-38340
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Simple Shopping Cart Cross-Site Request Forgery (3.5)
|
CVE-2013-2705
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WordPress Simple Shopping Cart Cross-Site Scripting (4.6.1)
|
CVE-2022-4672
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Slider-WP 1 Slider includes Backdoor [Only if downloaded via the vendor website] (1.2.9)
|
CVE-2021-24867
CWE-912
|
CWE-912
|
High
|
WordPress Plugin WordPress Slider Block Gutenslider Cross-Site Scripting (5.1.5)
|
CVE-2021-24640
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) Cross-Site Request Forgery (7.1.6)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) Multiple Vulnerabilities (7.5.14)
|
CVE-2023-23706
CVE-2023-23710
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) Security Bypass (7.5.12)
|
CWE-862
|
CWE-862
|
High
|
WordPress Plugin WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) Security Bypass (7.6.0)
|
CVE-2023-25455
CWE-862
|
CWE-862
|
High
|
WordPress Plugin WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) Security Bypass (7.6.4)
|
CVE-2023-2982
CWE-287
|
CWE-287
|
High
|
WordPress Plugin WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) Unspecified Vulnerability (5.1)
|
|
|
High
|
WordPress Plugin WordPress Social Login and Register (Discord, Google, Twitter, LinkedIn) Unspecified Vulnerability (7.2)
|
|
|
High
|
WordPress Plugin WordPress Social Login Cross-Site Scripting (2.0.3)
|
CVE-2014-4576
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Social Ring (Facebook Like, Google +1, ReTweet, LinkedIn and Pin It) Cross-Site Scripting (1.1.9)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Social Share, Social Login and Social Comments-Super Socializer Multiple Cross-Site Scripting Vulnerabilities (7.8.9)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Social Share, Social Login and Social Comments-Super Socializer Security Bypass (7.10.6)
|
CWE-287
|
CWE-287
|
High
|
WordPress Plugin WordPress Social Share, Social Login and Social Comments-Super Socializer Security Bypass (7.12.37)
|
CWE-287
|
CWE-287
|
High
|
WordPress Plugin WordPress Social Share Buttons & Analytics-GetSocial.io Cross-Site Request Forgery (4.2)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WordPress Social Stream Information Disclosure (1.6)
|
CWE-522
|
CWE-522
|
High
|
WordPress Plugin WordPress Social Stream Security Bypass (1.5.15)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WordPress Survey & Poll-Quiz, Survey and Poll PHP Object Injection (1.5.5)
|
CWE-915
|
CWE-915
|
High
|
WordPress Plugin WordPress Survey & Poll-Quiz, Survey and Poll SQL Injection (1.1.91)
|
CVE-2015-2090
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WordPress Survey & Poll-Quiz, Survey and Poll Unspecified Vulnerability (1.5.8.5)
|
|
|
High
|
WordPress Plugin WordPress Ultra Simple Paypal Shopping Cart Cross-Site Request Forgery (4.4)
|
CVE-2019-5992
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WordPress Ultra Simple Paypal Shopping Cart Multiple Cross-Site Scripting Vulnerabilities (4.3.9.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Wordpress Uninstall Cross-Site Request Forgery (1.2.1)
|
CVE-2015-9332
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WordPress Users 'uid' Parameter SQL Injection (1.3)
|
CVE-2011-4669
CWE-89
|
CWE-89
|
High
|
WordPress Plugin wordpress vertical image slider Multiple Vulnerabilities (1.0)
|
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin WORDPRESS VIDEO GALLERY Multiple Cross-Site Request Forgery Vulnerabilities (2.8)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WORDPRESS VIDEO GALLERY Multiple Vulnerabilities (2.3.1)
|
CVE-2014-9097
CVE-2014-9098
CWE-79
CWE-89
|
CWE-79
CWE-89
|
High
|
WordPress Plugin WORDPRESS VIDEO GALLERY Open Email Relay (2.8)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WORDPRESS VIDEO GALLERY SQL Injection (2.0)
|
CVE-2013-3478
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WORDPRESS VIDEO GALLERY SQL Injection (2.7)
|
CVE-2015-2065
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WORDPRESS VIDEO GALLERY SQL Injection (2.8)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WordPress Video Player Cross-Site Scripting (1.5.1)
|
CVE-2014-8584
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WordPress Video Player Multiple SQL Injection Vulnerabilities (1.5.16)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WordPress Video Player Multiple Vulnerabilities (1.5.4)
|
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin WordPress WP-Advanced-Search Cross-Site Request Forgery (3.3.8)
|
CVE-2022-47447
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WordPress WP-Advanced-Search Remote Code Execution (3.3.3)
|
CWE-94
|
CWE-94
|
High
|
WordPress Plugin WordPress WP-Advanced-Search SQL Injection (3.3.5)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WordPress WP-Advanced-Search SQL Injection (3.3.6)
|
CVE-2020-12104
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Wordspew 'id' Parameter SQL Injection (1.16)
|
CVE-2008-0682
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Work The Flow File Upload Arbitrary File Upload (2.3.1)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Work The Flow File Upload Arbitrary File Upload (2.5.2)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin World of Warcraft-Armory Table Cross-Site Scripting (0.2.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin World Travel Information Cross-Site Scripting (1.0.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Wow Forms-create any form with custom style SQL Injection (2.1)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Wow Forms-create any form with custom style SQL Injection (3.1.3)
|
CVE-2021-24628
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Wow Moodboard Lite Open Redirect (1.1.1.1)
|
CVE-2015-4070
CWE-601
|
CWE-601
|
High
|