Vulnerability Name CVE Severity
WordPress Plugin Gallery PhotoBlocks Unspecified Vulnerability (1.1.32)
WordPress Plugin Gallery Plugin for WordPress-Envira Photo Gallery Cross-Site Scripting (1.7.6) CVE-2020-9334
WordPress Plugin Gallery Plugin for WordPress-Envira Photo Gallery Cross-Site Scripting (1.8.3.2) CVE-2021-24126
WordPress Plugin Gallery transformation SQL Injection (1.0) CVE-2017-1002028
WordPress Plugin GamePress-The Game Database Cross-Site Scripting (1.1.0) CVE-2021-24617
WordPress Plugin Game Server Status Multiple Vulnerabilities (1.0) CVE-2021-24662
WordPress Plugin Game tabs Cross-Site Scripting (0.4.0) CVE-2014-4531
WordPress Plugin GamiPress-The most flexible and powerful gamification for WordPress Cross-Site Request Forgery (2.5.0)
WordPress Plugin GamiPress-The most flexible and powerful gamification for WordPress Multiple Vulnerabilities (2.5.6) CVE-2023-25697 CVE-2023-25715
WordPress Plugin GamiPress-The most flexible and powerful gamification for WordPress SQL Injection (2.5.7) CVE-2023-24000
WordPress Plugin Gantry 4 Framework Cross-Site Scripting (4.1.5)
WordPress Plugin Gantry 4 Framework Remote Command Execution (4.1.3)
WordPress Plugin Gantry 5 Framework Cross-Site Scripting (5.4.8)
WordPress Plugin GarageSale Cross-Site Scripting (1.2.2) CVE-2014-4532
WordPress Plugin Garee's Flickr Feed Multiple Cross-Site Scripting Vulnerabilities (0.8)
WordPress Plugin GA Top post for WP by Asentechllc Security Bypass (1.0)
WordPress Plugin GA Universal Cross-Site Request Forgery (1.0)
WordPress Plugin G Auto-Hyperlink SQL Injection (1.0.1) CVE-2021-24627
WordPress Plugin GB Gallery Slideshow SQL Injection (1.2) CVE-2014-8375
WordPress Plugin gboutique Local File Inclusion (1.3) CVE-2014-2383
WordPress Plugin GB Team Stats Cross-Site Scripting (1.5.1)
WordPress Plugin GD bbPress Attachments Cross-Site Scripting (2.5)
WordPress Plugin GD bbPress Attachments Multiple Vulnerabilities (2.2) CVE-2015-5481
WordPress Plugin GD bbPress Tools Cross-Site Scripting (1.7)
WordPress Plugin GdeSlon Affiliate Shop Open Redirect (2.0)
WordPress Plugin GD Mail Queue Cross-Site Scripting (3.9.3) CVE-2023-3122
WordPress Plugin GDPR CCPA Compliance Support PHP Object Injection (2.3)
WordPress Plugin GDPR Cookie Compliance Security Bypass (4.0.2)
WordPress Plugin GDPR Cookie Consent Security Bypass (1.8.2) CVE-2020-20633
WordPress Plugin GD Rating System Cross-Site Scripting (2.0.2) CVE-2017-18591
WordPress Plugin GD Rating System Multiple Vulnerabilities (2.3) CVE-2018-5286 CVE-2018-5287 CVE-2018-5288 CVE-2018-5289 CVE-2018-5290 CVE-2018-5291 CVE-2018-5292 CVE-2018-5293
WordPress Plugin GD Rating System Unspecified Vulnerability (2.6)
WordPress Plugin GD Star Rating 'de' Parameter SQL Injection (1.9.10)
WordPress Plugin GD Star Rating 'export.php' Security Bypass (1.9.18)
WordPress Plugin GD Star Rating 'tpl_section' Parameter Cross-Site Scripting (1.9.16)
WordPress Plugin GD Star Rating 'votes' Parameter SQL Injection (1.9.8)
WordPress Plugin GD Star Rating 'wpfn' Parameter Cross-Site Scripting (1.9.8)
WordPress Plugin GD Star Rating Multiple Vulnerabilities (1.9.22) CVE-2014-2838 CVE-2014-2839
WordPress Plugin GenerateBlocks Cross-Site Scripting (1.3.5) CVE-2021-24751
WordPress Plugin Generate Child Theme Security Bypass (1.5.3) CVE-2021-24752
WordPress Plugin Generate PDF using Contact Form 7 Cross-Site Scripting (3.5) CVE-2022-3070
WordPress Plugin Genesis Columns Advanced Cross-Site Scripting (2.0.3) CVE-2022-4706
WordPress Plugin Genesis Simple Defaults Arbitrary File Upload (1.0.0)
WordPress Plugin Genesis Simple Share Cross-Site Scripting (1.0.6)
WordPress Plugin Genie WP Favicon Cross-Site Request Forgery (0.5.2) CVE-2021-24674
WordPress Plugin GeoDirectory-WordPress Business Directory and Classified Ads Listings Cross-Site Scripting (1.4.4)
WordPress Plugin GeoDirectory-WordPress Business Directory and Classified Ads Listings Cross-Site Scripting (2.1.1.2)
WordPress Plugin GeoDirectory-WordPress Business Directory and Classified Ads Listings Cross-Site Scripting (2.2.21) CVE-2022-4775
WordPress Plugin GeoDirectory-WordPress Business Directory and Classified Ads Listings SQL Injection (2.2.23) CVE-2023-0278
WordPress Plugin GeoDirectory Location Manager Multiple SQL Injection Vulnerabilities (2.1.0.9) CVE-2021-24361
WordPress Plugin Geo Mashup Cross-Site Scripting (1.8.2) CVE-2015-1383
WordPress Plugin Geo Mashup Unspecified Vulnerability (1.10.3) CVE-2018-14071
WordPress Plugin GEO my WordPress Unspecified Vulnerability (2.6.1.1)
WordPress Plugin GEO Redirector Cross-Site Scripting (1.0.1) CVE-2014-4533
WordPress Plugin GeSHi Source Colorer Cross-Site Scripting (0.13) CVE-2013-1808
WordPress Plugin Get Recent Comments Cross-Site Scripting (2.0.6)
WordPress Plugin Gettext override translations Cross-Site Scripting (1.0.1) CVE-2022-3036
WordPress Plugin Get URL Cron Multiple Vulnerabilities (1.4.7)
WordPress Plugin Ghost Arbitrary File Download (0.5.5)
WordPress Plugin Gift Certificate Creator Cross-Site Scripting (1.0.0) CVE-2017-1002017
WordPress Plugin Gift Vouchers (Gift Cards and Packages) (WooCommerce Supported) SQL Injection (1.0.5) CVE-2018-16159
WordPress Plugin GigPress 'Notes' Field HTML Injection (2.1.10)
WordPress Plugin GigPress Cross-Site Scripting (2.3.27) CVE-2022-4759
WordPress Plugin GigPress Multiple SQL Injection Vulnerabilities (2.3.8) CVE-2015-4066
WordPress Plugin GigPress Multiple Vulnerabilities (2.3.10)
WordPress Plugin GigPress SQL Injection (2.3.28) CVE-2023-0381
WordPress Plugin Gigya-Social Infrastructure Cross-Site Scripting (1.1.8)
WordPress Plugin Gigya-Social Infrastructure Unspecified Vulnerability (3.0.4)
WordPress Plugin Ginger-EU Cookie Law Multiple Vulnerabilities (4.1.3)
WordPress Plugin GistPress Cross-Site Scripting (3.0.1) CVE-2020-8498
WordPress Plugin Giveaway Boost PHP Object Injection (2.1.2)
WordPress Plugin Giveaway SQL Injection (1.2.2) CVE-2021-24497
WordPress Plugin GiveWP-Donation and Fundraising Platform Cross-Site Request Forgery (2.25.2)
WordPress Plugin GiveWP-Donation and Fundraising Platform Cross-Site Scripting (0.8)
WordPress Plugin GiveWP-Donation and Fundraising Platform Cross-Site Scripting (2.3.0) CVE-2019-9909