Vulnerability Name |
CVE
CWE
|
CWE |
Severity |
WordPress Plugin WPBakery Page Builder Cross-Site Scripting (6.4.0)
|
CVE-2020-28650
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Bannerize 'ajax_clickcounter.php' SQL Injection (2.8.6)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP Bannerize 'ajax_sorter.php' SQL Injection (2.8.7)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP Bannerize SQL Injection (4.0.2)
|
CVE-2021-39351
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP Banners Lite Cross-Site Scripting (1.40)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP BASE Booking of Appointments, Services and Events PHP Object Injection (3.5.0)
|
CWE-915
|
CWE-915
|
High
|
WordPress Plugin WP Basic Elements Cross-Site Request Forgery (5.2.15)
|
CVE-2022-47139
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Better Permalinks Cross-Site Request Forgery (3.0.4)
|
CVE-2019-15835
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Block and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection-StopBadBots Cross-Site Scripting (6.61)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Block and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection-StopBadBots SQL Injection (6.59)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP Block and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection-StopBadBots Unspecified Vulnerability (6.66)
|
|
|
High
|
WordPress Plugin WPBook Cross-Site Request Forgery (2.7)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Booking Calendar Multiple Vulnerabilities (3.0.0)
|
CWE-79
CWE-89
|
CWE-79
CWE-89
|
High
|
WordPress Plugin WP Booking Cross-Site Scripting (1.4)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Booking System Cross-Site Scripting (1.3.3)
|
CVE-2017-2168
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Booking System Multiple Vulnerabilities (1.5.1)
|
CVE-2019-12239
CWE-89
CWE-352
|
CWE-89
CWE-352
|
High
|
WordPress Plugin WP Business Directory Cross-Site Scripting (1.0.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Business Intelligence Lite Arbitrary File Upload (1.0.6)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin WP Business Intelligence Lite SQL Injection (1.6.1)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WPCafe-Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce Cross-Site Scripting (2.1.4)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WPCafe-Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce Cross-Site Scripting (2.2.24)
|
CVE-2024-5427
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WPCafe-Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce Local File Inclusion (2.2.25)
|
CVE-2024-5431
CWE-22
|
CWE-22
|
High
|
WordPress Plugin WPCafe-Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce Security Bypass (2.2.22)
|
CVE-2023-47805
CWE-862
|
CWE-862
|
High
|
WordPress Plugin WPCafe-Online Food Ordering, Restaurant Menu, Delivery, and Reservations for WooCommerce Server-Side Request Forgery (2.2.23)
|
CVE-2024-1855
CWE-918
|
CWE-918
|
High
|
WordPress Plugin WP Canvas-Shortcodes Cross-Site Scripting (2.06)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WPCB Cross-Site Scripting (2.4.8)
|
CVE-2014-4581
CWE-79
|
CWE-79
|
High
|
WordPress Plugin wpCentral Privilege Escalation (1.5.0)
|
CVE-2020-9043
CWE-264
|
CWE-264
|
High
|
WordPress Plugin wpCentral Security Bypass (1.4.7)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan Cross-Site Request Forgery (2.0.1.6)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan Cross-Site Request Forgery (2.7.2)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan Cross-Site Scripting (9.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan Multiple Security Bypass Vulnerabilities (8.0)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan Security Bypass (8.9)
|
CVE-2021-37597
CVE-2021-37598
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan Security Bypass (9.0)
|
CVE-2022-2939
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP Cerber Security, Anti-spam & Malware Scan Security Bypass (9.3.2)
|
CVE-2022-4417
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP CleanFix Cross-Site Request Forgery (2.4.4)
|
CVE-2013-2108
CVE-2013-2109
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Code Highlight.js Cross-Site Request Forgery (0.6.2)
|
CVE-2019-12934
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Code Highlight.js Cross-Site Scripting (0.6.3)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Coder-add custom html, css and js code Cross-Site Request Forgery (2.5.1)
|
CVE-2021-25053
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Coder-add custom html, css and js code Cross-Site Request Forgery (2.5.2)
|
CVE-2022-2388
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Coder-add custom html, css and js code SQL Injection (2.5.3)
|
CVE-2023-0895
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WPCOM Member Malicious Code (1.3.16)
|
CVE-2024-6297
CWE-506
|
CWE-506
|
High
|
WordPress Plugin WP Comment Remix SQL Injection and HTML Injection Vulnerabilities (1.4.3)
|
CWE-79
CWE-89
|
CWE-79
CWE-89
|
High
|
WordPress Plugin wpCommentTwit Cross-Site Request Forgery (0.5)
|
CVE-2014-9340
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Construction Mode Cross-Site Request Forgery (1.8)
|
CVE-2014-4854
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Construction Mode Cross-Site Request Forgery (1.91)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Construction Mode Cross-Site Request Forgery (3.31)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Consultant Cross-Site Scripting (1.0)
|
CVE-2014-4582
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Content Copy Protection & No Right Click Cross-Site Request Forgery (3.1.5)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Content Copy Protection & No Right Click Security Bypass (3.1.4)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP Content Filter Unspecified Vulnerability (2.42)
|
|
|
High
|
WordPress Plugin Wp Cookie Choice Cross-Site Request Forgery (1.1.0)
|
CVE-2021-24595
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Cost Estimation & Payment Forms Builder Directory Traversal (9.659)
|
CWE-22
|
CWE-22
|
High
|
WordPress Plugin WP Cost Estimation & Payment Forms Builder Multiple Vulnerabilities (9.642)
|
CWE-73
CWE-434
|
CWE-73
CWE-434
|
High
|
WordPress Plugin WP Courses LMS Cross-Site Scripting (2.0.43)
|
CVE-2021-24621
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Courses LMS Security Bypass (2.0.28)
|
CVE-2020-26876
CWE-264
|
CWE-264
|
High
|
WordPress Plugin WP Crontrol Cross-Site Scripting (1.2.3)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WPCS-WordPress Currency Switcher Cross-Site Request Forgery (1.1.6)
|
CVE-2021-20780
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP CSS 'wp-css-compress.php' Local File Disclosure (2.0.5)
|
CWE-22
|
CWE-22
|
High
|
WordPress Plugin WP CSV Exporter SQL Injection (1.3.6)
|
CVE-2022-3249
CWE-89
|
CWE-89
|
High
|
WordPress Plugin WP CSV Unspecified Vulnerability (1.7.8.0)
|
|
|
High
|
WordPress Plugin wpcu3er 'ajaxReq.php' Arbitrary File Upload (0.55)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin WP Custom Admin Interface PHP Object Injection (7.28)
|
CVE-2022-4043
CWE-915
|
CWE-915
|
High
|
WordPress Plugin WP Custom Admin Login Page Logo Unspecified Vulnerability (1.4.1)
|
|
|
High
|
WordPress Plugin WP Custom Cursors Multiple Vulnerabilities (3.0)
|
CVE-2022-3149
CVE-2022-3150
CVE-2022-3151
CWE-89
CWE-352
|
CWE-89
CWE-352
|
High
|
WordPress Plugin WP Customer Area Cross-Site Request Forgery (8.1.3)
|
CVE-2022-4745
CWE-352
|
CWE-352
|
High
|
WordPress Plugin WP Customer Area Cross-Site Scripting (7.4.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Customer Reviews Cross-Site Scripting (3.4.2)
|
CVE-2021-24135
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Customer Reviews Cross-Site Scripting (3.5.5)
|
CVE-2021-24296
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Customer Reviews Multiple Vulnerabilities (3.0.8)
|
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin WP Customer Reviews Unspecified Vulnerability (3.0.7)
|
|
|
High
|
WordPress Plugin WP Custom Fields Search Cross-Site Scripting (0.3.28)
|
CVE-2017-9419
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Custom Fields Search Cross-Site Scripting (1.2.34)
|
CVE-2022-47157
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Customize Login Cross-Site Scripting (1.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin WP Custom Pages 'url' Parameter Local File Disclosure (0.5.0.1)
|
CVE-2011-1669
CWE-22
|
CWE-22
|
High
|