WordPress Plugin Vulnerabilities

0-9 - A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z
Name Added Title
s2member-secure-file-browser 2015-05-14 Multiple Plugins - jQuery prettyPhoto DOM Cross-Site Scri...
s3-video 2014-08-01 S3 Video <= 0.97 - VideoJS Cross Site Scripting
s3-video 2014-08-01 S3 Video 0.982 - preview_video.php base Parameter XSS
s3-video 2016-04-13 S3 Video Plugin <= 0.983 - Unauthenticated Reflected Cros...
s3bubble-amazon-s3-audio-st... 2015-07-09 S3Bubble Amazon S3 Video And Audio Streaming With Analyti...
sabre 2014-08-01 SABRE <= 1.2.0 - Cross Site Scripting
safe-editor 2016-05-17 safe-editor <= 1.1 - Unauthenticated CSS/JS-injection
sagepay-direct-for-woocomme... 2014-08-01 WooCommerce SagePay Direct Payment Gateway 0.1.6.6 - page...
sagepay-direct-for-woocomme... 2014-08-01 WooCommerce SagePay Direct Payment Gateway 0.1.6.6 - page...
sagepay-direct-for-woocomme... 2014-08-01 WooCommerce SagePay Direct Payment Gateway 0.1.6.6 - page...
salesforce-wordpress-to-lead 2014-08-01 WordPress-to-Lead for Salesforce CRM 1.0.4 - ov_plugin_to...
salesforce-wordpress-to-lead 2014-08-01 WordPress-to-Lead for Salesforce CRM 1.0.1 - salesforce.p...
salesforce-wordpress-to-lead 2014-08-01 WordPress-to-Lead for Salesforce CRM 1.0 - salesforce.php...
sam-pro-free 2016-11-02 SAM Pro (Free Edition) <= 1.9.6.67 - Local File Inclusion...
sb-uploader 2014-08-01 WordPress SB Uploader 3.9 - Arbitrary File Upload
schreikasten 2014-08-01 Schreikasten 0.14.13 - wp-admin/admin-ajax.php Multiple P...
scorerender 2014-08-01 scorerender <= 0.3.4 - XSS in ZeroClipboard
scormcloud 2014-08-01 SCORM Cloud <= 1.0.6.6 - SQL Injection
se-html5-album-audio-player 2015-06-08 SE HTML5 Album Audio Player <= 1.1.0 - Local File Include
search-and-share 2014-08-01 search-&-share 0.9.3 - SearchAndShare.php Direct Request ...
search-and-share 2014-08-01 search-&-share <= 0.9.3 - XSS in ZeroClipboard
search-autocomplete 2014-08-01 SearchAutocomplete <= 1.0.8 - SQL Injection
search-everything 2014-08-01 Search Everything 8.1.0 - options.php Unspecified CSRF
search-everything 2014-08-01 Search Everything 7.0.2 - search-everything.php s Paramet...
SearchNSave 2014-08-01 Search N Save - SearchNSave/error_log Direct Request Path...
searchterms-tagging-2 2015-11-22 SEO SearchTerms Tagging <= 2 1.535 - Authenticated SQL In...
securemoz-security-audit 2015-09-09 SecureMoz Security Audit <= 1.0.5 - MitM PHP Object Injec...
securimage-wp 2014-08-01 Securimage-WP 3.2.4 - siwp_test.php URI XSS
sell-downloads 2014-12-29 Sell Downloads 1.0.1 - Arbitrary File Disclosure
sem-wysiwyg 2014-08-01 SEM WYSIWYG - Arbitrary File Upload
sender 2017-04-13 Multiple BestWebSoft Plugins - Authenticated Reflected GE...
sendit 2014-08-01 SendIt <= 1.5.9 - Blind SQL Injection
sendit 2014-09-19 Sendit < 2.1.1 SQL Injection
sendpress 2015-11-24 SendPress Newsletters <= 1.1.7.21 - Authenticated SQL Inj...
seo-image 2014-08-01 SEO Friendly Images 2.7.4 - seo-friendly-images.php Add P...
seo-image 2014-08-01 SEO Friendly Images 2.7.4 - seo-friendly-images.php Multi...
seo-image 2015-01-03 SEO Friendly Images <= 3.0.4 - Cross-Site Scripting (XSS)
seo-rank-reporter 2015-11-24 SEO Rank Reporter <= 2.2.2 - Authenticated Reflected Cros...
seo-redirection 2014-12-15 SEO Redirection <= 2.2 - Unauthenticated Stored Cross-Sit...
seo-redirection 2015-11-24 SEO Redirection Plugin <= 2.8 - Authenticated Reflected C...
seo-spy-google-wordpress-pl... 2014-08-01 seo-spy-google - ofc_upload_image.php Arbitrary File Upload
seo-watcher 2014-08-01 SEO Watcher - Open Flash Chart Arbitrary File Creation