Vulnerability Name CVE Severity
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2015-2213) CVE-2015-2213
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-21661) CVE-2022-21661
WordPress Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2022-21664) CVE-2022-21664
WordPress Inadequate Encryption Strength Vulnerability (CVE-2012-6707) CVE-2012-6707
WordPress MailPoet Newsletters (wysija-newsletters) unauthenticated file upload
WordPress Missing Authentication for Critical Function Vulnerability (CVE-2020-11028) CVE-2020-11028
WordPress MU 'wp-admin/wpmu-blogs.php' Multiple Cross-Site Scripting Vulnerabilities (1.0 - 2.5.1) CVE-2008-4671
WordPress MU 'wp-includes/wpmu-functions.php' Cross-Site Scripting Vulnerability (1.0 - 2.6) CVE-2009-1030
WordPress Multiple Cross-Site Scripting and SQL Injection Vulnerabilities (1.2.1 - 1.2.2)
WordPress Multiple Cross-Site Scripting Vulnerabilities (1.2 - 1.2.1)
WordPress Multiple Cross-Site Scripting Vulnerabilities (2.0 - 2.0.1) CVE-2006-0985 CVE-2006-1796
WordPress Multiple Cross-Site Scripting Vulnerabilities (2.0.11 - 2.3) CVE-2008-0193
WordPress Multiple Cross-Site Scripting Vulnerabilities (4.1 - 4.2.1) CVE-2015-3429 CVE-2015-8834
WordPress Multiple Vulnerabilities (0.70 - 3.6.1) CVE-2016-5832 CVE-2016-5833 CVE-2016-5834 CVE-2016-5835 CVE-2016-5836 CVE-2016-5837 CVE-2016-5838 CVE-2016-5839
WordPress OptimizePress unrestricted file upload CVE-2013-7102
WordPress Other Vulnerability (CVE-2005-1687) CVE-2005-1687
WordPress Other Vulnerability (CVE-2005-1810) CVE-2005-1810
WordPress Other Vulnerability (CVE-2005-2108) CVE-2005-2108
WordPress Other Vulnerability (CVE-2005-2612) CVE-2005-2612
WordPress Other Vulnerability (CVE-2006-1012) CVE-2006-1012
WordPress Other Vulnerability (CVE-2006-2667) CVE-2006-2667
WordPress Other Vulnerability (CVE-2007-0233) CVE-2007-0233
WordPress Other Vulnerability (CVE-2007-0262) CVE-2007-0262
WordPress Other Vulnerability (CVE-2007-0539) CVE-2007-0539
WordPress Other Vulnerability (CVE-2007-2821) CVE-2007-2821
WordPress Other Vulnerability (CVE-2016-2221) CVE-2016-2221
WordPress Other Vulnerability (CVE-2016-2222) CVE-2016-2222
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2008-2146) CVE-2008-2146
WordPress Permissions, Privileges, and Access Controls Vulnerability (CVE-2008-3747) CVE-2008-3747
WordPress Pingback Source URI Denial of Service and Information Disclosure Vulnerabilities (0.6.2 - 2.1.3) CVE-2007-0540
WordPress Plugin .htaccess Redirect Cross-Site Scripting (0.3.1) CVE-2021-38361
WordPress Plugin 0mk Shortener Cross-Site Request Forgery (0.2) CVE-2022-2933
WordPress Plugin 1 Flash Gallery 'upload.php' Arbitrary File Upload (1.5.7)
WordPress Plugin 1 Flash Gallery Cross-Site Scripting and SQL Injection Vulnerabilities (0.2.5)
WordPress Plugin 1-click Retweet/Share/Like Cross-Site Scripting (5.2)
WordPress Plugin 1player Cross-Site Scripting (1.3)
WordPress Plugin 2 Click Social Media Buttons 'xing-url' Parameter Cross-Site Scripting (0.32.2) CVE-2012-4273
WordPress Plugin 2kb Amazon Affiliates Store Cross-Site Scripting (2.1.0) CVE-2017-14622
WordPress Plugin 2Way VideoCalls and Random Chat-HTML5 Webcam Videochat Cross-Site Scripting (4.41)
WordPress Plugin 2Way VideoCalls and Random Chat-HTML5 Webcam Videochat Cross-Site Scripting (5.2.7) CVE-2021-34656
WordPress Plugin 3dady real-time web stats Cross-Site Request Forgery (1.0)
WordPress Plugin 3D Banner Rotator 'upload.php' Arbitrary File Upload (2.1)
WordPress Plugin 3D Cover Carousel Cross-Site Scripting (1.0) CVE-2021-38318
WordPress Plugin 3D Flick Slideshow 'upload.php' Arbitrary File Upload (2.1)
WordPress Plugin 3DPrint Cross-Site Request Forgery (3.5.4.7) CVE-2022-3899
WordPress Plugin 3DPrint Lite Arbitrary File Upload (1.9.1.4)
WordPress Plugin 3DPrint Lite Cross-Site Scripting (1.9.1.5)
WordPress Plugin 3D Product configurator for WooCommerce Arbitrary File Upload (1.5.531)
WordPress Plugin 3D Slider Slice Box Multiple Cross-Site Scripting Vulnerabilities (1.0)
WordPress Plugin 3D Tag Cloud Cross-Site Request Forgery (3.8) CVE-2022-36417
WordPress Plugin 3xSocializer Cross-Site Scripting (0.98.22)
WordPress Plugin 4k Icons for Visual Composer-Free Cross-Site Scripting (1.0) CVE-2021-24435
WordPress Plugin 5gig Concerts Unspecified Vulnerability (1.0)
WordPress Plugin 10Web AI Assistant-AI content writing assistant Security Bypass (1.0.18) CVE-2023-6985
WordPress Plugin 10WebAnalytics Cross-Site Request Forgery (1.2.8)
WordPress Plugin 10Web Map Builder for Google Maps Cross-Site Scripting (1.0.69)
WordPress Plugin 10Web Map Builder for Google Maps Cross-Site Scripting (1.0.71) CVE-2022-4758
WordPress Plugin 10Web Map Builder for Google Maps Security Bypass (1.0.63)
WordPress Plugin 10Web Map Builder for Google Maps SQL Injection (1.0.72)
WordPress Plugin 10Web Social Feed for Instagram Multiple Cross-Site Scripting Vulnerabilities (1.3.0) CVE-2018-10300 CVE-2018-10301
WordPress Plugin 10Web Social Feed for Instagram Security Bypass (1.3.18)
WordPress Plugin 10Web Social Post Feed Unspecified Vulnerability (1.1.26)
WordPress Plugin 123ContactForm for WordPress Multiple Vulnerabilities (1.5.6)
WordPress Plugin 123devis-affiliation Cross-Site Scripting (1.0.4)
WordPress Plugin 301 Redirects-Easy Redirect Manager Cross-Site Request Forgery (2.72)
WordPress Plugin 301 Redirects-Easy Redirect Manager Security Bypass (2.40) CVE-2019-19915
WordPress Plugin 301 Redirects-Easy Redirect Manager SQL Injection (2.50) CVE-2021-24142
WordPress Plugin 360 Product Rotation Arbitrary File Upload (1.2.4)
WordPress Plugin 360 Product Rotation Cross-Site Scripting (1.4.7) CVE-2019-15082
WordPress Plugin 360 Product Viewer Cross-Site Scripting (2.5.1)
WordPress Plugin 404 SEO Redirection Cross-Site Scripting (1.3) CVE-2021-24325
WordPress Plugin 404 SEO Redirection SQL Injection (1.0)
WordPress Plugin 404 to 301-Redirect, Log and Notify 404 Errors Cloaking (2.2.9)
WordPress Plugin 404 to 301-Redirect, Log and Notify 404 Errors Cross-Site Request Forgery (3.0.8) CVE-2021-24766
WordPress Plugin 404 to 301-Redirect, Log and Notify 404 Errors Cross-Site Scripting (2.3.0)