Vulnerability Name CVE Severity
WordPress 'wp-db.php' Character Set SQL Injection Vulnerability (2.0 - 2.3.1) CVE-2007-6318
WordPress 'wp-login.php' HTTP Response Splitting Vulnerability (1.2) CVE-2004-1584
WordPress 'wp-register.php' Multiple Cross-Site Scripting Vulnerabilities (2.0 - 2.0.1) CVE-2007-5105 CVE-2007-5106
WordPress 'wp-trackback.php' SQL Injection Vulnerability (1.5) CVE-2005-1687
WordPress 'xmlrpc.php' Remote Security Bypass Vulnerability (3.0.1 - 3.0.2) CVE-2010-5106
WordPress 0.7 Posts SQL Injection Vulnerability (0.7) CVE-2003-1598
WordPress 1.5.1.2 Multiple Vulnerabilities (1.0 - 1.5.1.2) CVE-2005-2107 CVE-2005-2108 CVE-2005-2109 CVE-2005-2110
WordPress 2.0.1 Denial of Service Vulnerability (0.6.2 - 2.0.1)
WordPress 2.0.2 Username Remote PHP Code Injection Vulnerability (0.6.2 - 2.0.2) CVE-2006-2667 CVE-2006-2702
WordPress 2.0.3 Multiple Unspecified Security Vulnerabilities (2.0 - 2.0.3) CVE-2006-4028
WordPress 2.0.4 Multiple Security Vulnerabilities (2.0.4) CVE-2006-5705 CVE-2006-6016 CVE-2006-6017
WordPress 2.0.5 Charset Decoding SQL Injection Vulnerability (0.6.2 - 2.0.5) CVE-2007-0107
WordPress 2.0.5 Cross-Site Scripting Vulnerability (0.6.2 - 2.0.5) CVE-2006-6808
WordPress 2.0.5 Invalid CSRF Token Cross-Site Scripting Vulnerability (0.6.2 - 2.0.5) CVE-2007-0106
WordPress 2.0.6 'Zend_Hash_Del_Key_Or_Index' SQL Injection Vulnerability (0.6.2 - 2.0.6) CVE-2007-0233
WordPress 2.0.9 Multiple Vulnerabilities (2.0 - 2.0.9) CVE-2007-1622 CVE-2007-1893 CVE-2007-1894 CVE-2007-1897
WordPress 2.1.1 Command Execution Backdoor Vulnerability (2.1.1) CVE-2007-1277
WordPress 2.1.1 Cross-Site Scripting Vulnerability (2.1.1) CVE-2007-1244
WordPress 2.1.2 Multiple Vulnerabilities (2.1 - 2.1.2) CVE-2007-1622 CVE-2007-1893 CVE-2007-1894 CVE-2007-1897
WordPress 2.2 Cross-Site Scripting Vulnerability (2.2) CVE-2007-3238
WordPress 2.2 Multiple Vulnerabilities (2.2) CVE-2007-3140 CVE-2007-3238 CVE-2007-3543
WordPress 2.2.1 Multiple Vulnerabilities (2.2.1) CVE-2007-3639 CVE-2007-4139 CVE-2007-4153 CVE-2007-4154
WordPress 2.2.2 Multiple Vulnerabilities (2.2 - 2.2.2) CVE-2007-4893 CVE-2007-4894 CVE-2008-2146
WordPress 2.3 Cross-Site Scripting Vulnerability (2.3) CVE-2007-5710
WordPress 2.3.1 Unauthorized Post Access Vulnerability (2.3.1)
WordPress 2.3.2 Post Edit Unauthorized Access Vulnerability (0.7 - 2.3.2) CVE-2008-0664
WordPress 2.3.3 Directory Traversal Vulnerability (0.6.2 - 2.3.3) CVE-2008-4769
WordPress 2.5 Cookie Integrity Protection Unauthorized Access Vulnerability (0.6.2 - 2.5) CVE-2008-1930
WordPress 2.5 Cross-Site Scripting Vulnerability (2.5) CVE-2008-2068
WordPress 2.6.1 Lost Password SQL Column Truncation Unauthorized Access Vulnerability (0.71 - 2.6.1) CVE-2008-4106 CVE-2008-4107
WordPress 2.6.2 Remote Code Execution Vulnerability (0.70 - 2.6.2) CVE-2008-4796
WordPress 2.6.3 Cross-Site Scripting Vulnerability (0.6.2 - 2.6.3) CVE-2008-5278
WordPress 2.8 Multiple Existing/Non-Existing Username Enumeration Weaknesses (0.6.2 - 2.8) CVE-2009-2335 CVE-2009-2336
WordPress 2.8.1 Comment Author URI Cross-Site Scripting Vulnerability (0.6.2 - 2.8.1) CVE-2009-2851
WordPress 2.8.2 Multiple Security Bypass Vulnerabilities (2.0 - 2.8.2) CVE-2009-2853 CVE-2009-2854
WordPress 2.8.3 Admin Password Reset Security Bypass Vulnerability (0.6.2 - 2.8.3) CVE-2009-2762
WordPress 2.8.4 Denial of Service Vulnerability (0.6.2 - 2.8.4) CVE-2009-3622
WordPress 2.8.5 Multiple Vulnerabilities (2.8 - 2.8.5) CVE-2009-3890 CVE-2009-3891
WordPress 2.9.1 Trashed Posts Security Bypass Vulnerability (2.9 - 2.9.1) CVE-2010-0682
WordPress 3.0.1 Multiple Vulnerabilities (0.6.2 - 3.0.1) CVE-2010-4257 CVE-2010-5293 CVE-2010-5294 CVE-2010-5295 CVE-2010-5296
WordPress 3.0.3 KSES Library Cross-Site Scripting Vulnerability (0.6.2 - 3.0.3) CVE-2010-4536
WordPress 3.0.4 Multiple Vulnerabilities (0.6.2 - 3.0.4) CVE-2011-0700 CVE-2011-0701
WordPress 3.1 Multiple Vulnerabilities (0.7 - 3.1) CVE-2011-4956 CVE-2011-4957
WordPress 3.1.2 Multiple Vulnerabilities (3.0.1 - 3.1.2) CVE-2011-3122 CVE-2011-3125 CVE-2011-3126 CVE-2011-3127 CVE-2011-3128 CVE-2011-3129 CVE-2011-3130
WordPress 3.1.3 Multiple SQL Injection Vulnerabilities (3.1 - 3.1.3)
WordPress 3.3 Cross-Site Scripting Vulnerability (3.3) CVE-2012-0287
WordPress 3.3.1 Multiple Vulnerabilities (2.0 - 3.3.1) CVE-2012-2399 CVE-2012-2400 CVE-2012-2401 CVE-2012-2402 CVE-2012-2403 CVE-2012-2404 CVE-2012-3414
WordPress 3.3.2 Multiple Vulnerabilities (3.3 - 3.3.2) CVE-2012-6633 CVE-2012-6634 CVE-2012-6635
WordPress 3.4 Multiple Vulnerabilities (3.4) CVE-2012-3384 CVE-2012-3385
WordPress 3.4.1 Multiple Vulnerabilities (2.0 - 3.4.1) CVE-2012-3383 CVE-2012-4421 CVE-2012-4422
WordPress 3.5 Multiple Vulnerabilities (1.5 - 3.5) CVE-2013-0235 CVE-2013-0236 CVE-2013-0237
WordPress 3.5.1 Multiple Vulnerabilities (2.0 - 3.5.1) CVE-2013-2173 CVE-2013-2199 CVE-2013-2200 CVE-2013-2201 CVE-2013-2202 CVE-2013-2203 CVE-2013-2204 CVE-2013-2205
WordPress 3.6 Multiple Vulnerabilities (2.0 - 3.6) CVE-2013-4338 CVE-2013-4339 CVE-2013-4340 CVE-2013-5738 CVE-2013-5739
WordPress 3.7.1 Multiple Vulnerabilities (3.7 - 3.7.1) CVE-2014-0165 CVE-2014-0166
WordPress 3.7.3 Multiple Vulnerabilities (3.7 - 3.7.3) CVE-2014-5204 CVE-2014-5205 CVE-2014-5240 CVE-2014-5265 CVE-2014-5266
WordPress 3.7.4 Multiple Vulnerabilities (3.7 - 3.7.4) CVE-2014-9031 CVE-2014-9032 CVE-2014-9033 CVE-2014-9034 CVE-2014-9035 CVE-2014-9036 CVE-2014-9037 CVE-2014-9038 CVE-2014-9039
WordPress 3.7.x Arbitrary File Deletion Vulnerability (3.7 - 3.7.26) CVE-2018-12895
WordPress 3.7.x Cross-Domain Flash Injection Vulnerability (3.7 - 3.7.24) CVE-2016-9263 CVE-2018-5776
WordPress 3.7.x Cross-Site Request Forgery (3.7 - 3.7.28) CVE-2019-9787
WordPress 3.7.x Denial of Service Vulnerability (3.7 - 3.7.25) CVE-2018-6389
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.12) CVE-2016-2221 CVE-2016-2222
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.14) CVE-2016-5832 CVE-2016-5833 CVE-2016-5834 CVE-2016-5835 CVE-2016-5836 CVE-2016-5837 CVE-2016-5838 CVE-2016-5839
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.15) CVE-2016-7168 CVE-2016-7169
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.16) CVE-2016-10033 CVE-2016-10045 CVE-2017-5488 CVE-2017-5489 CVE-2017-5490 CVE-2017-5491 CVE-2017-5492 CVE-2017-5493
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.17) CVE-2017-5610 CVE-2017-5611 CVE-2017-5612
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.18) CVE-2017-6814 CVE-2017-6815 CVE-2017-6816 CVE-2017-6817 CVE-2017-6818 CVE-2017-6819
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.20) CVE-2017-9061 CVE-2017-9062 CVE-2017-9063 CVE-2017-9064 CVE-2017-9065 CVE-2017-9066
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.21) CVE-2017-14718 CVE-2017-14719 CVE-2017-14720 CVE-2017-14721 CVE-2017-14722 CVE-2017-14723 CVE-2017-14724 CVE-2017-14725 CVE-2017-14726
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.23) CVE-2017-17091 CVE-2017-17092 CVE-2017-17093 CVE-2017-17094
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.25) CVE-2018-10100 CVE-2018-10101 CVE-2018-10102
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.27) CVE-2018-20147 CVE-2018-20148 CVE-2018-20149 CVE-2018-20150 CVE-2018-20151 CVE-2018-20152 CVE-2018-20153
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.29) CVE-2019-16217 CVE-2019-16218 CVE-2019-16220 CVE-2019-16221 CVE-2019-16222 CVE-2019-16223
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.30) CVE-2019-17669 CVE-2019-17670 CVE-2019-17671 CVE-2019-17672 CVE-2019-17673 CVE-2019-17674 CVE-2019-17675
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.31) CVE-2019-16780 CVE-2019-16781 CVE-2019-20041 CVE-2019-20042 CVE-2019-20043
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.32) CVE-2020-11025 CVE-2020-11026 CVE-2020-11027 CVE-2020-11028 CVE-2020-11029 CVE-2020-11030