WordPress Plugin Vulnerabilities

0-9 - A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z
Name Published Title
wp125 2014-08-01 WP125 <= 1.4.4 - Multiple XSS
wp125 2014-08-01 WP125 <= 1.4.4 - Multiple XSS
adminimize 2014-08-01 adminimize 1.7.21 - 'page' Parameter Cross Site Scripting
advanced-dewplayer 2014-08-01 Advanced Dewplayer - dewplayer-vinyl.swf xml Parameter XM...
ajax-pagination 2014-08-01 Ajax Pagination 1.1 - wp-admin/admin-ajax.php loop Parame...
bulletproof-security 2016-05-11 BulletProof Security <= .53.3 - Multiple XSS Vulnerabilities
cms-tree-page-view 2014-08-01 CMS Tree Page View 0.8.8 - XSS
count-per-day 2014-08-01 Count Per Day <= 3.1 - download.php f Parameter Traversal...
count-per-day 2014-08-01 Count Per Day <= 3.1 - download.php f Parameter Traversal...
count-per-day 2014-08-01 Count Per Day <= 3.1 - download.php f Parameter Traversal...
cpl 2014-08-01 Copperleaf Photolog - SQL injection
dm-albums 2014-08-01 DM Albums - Multiple Remote File Disclosure
dmsguestbook 2014-08-01 dmsguestbook 1.7.0 - Multiple Remote Vulnerabilities
downloads-manager 2014-08-01 Download Manager 0.2 - Arbitrary File Upload Exploit
duplicate-post 2014-08-01 Duplicate Post 2.5 - duplicate-post-admin.php User Login ...
easy-career-openings 2014-08-01 Easy Career Openings <= 0.4 - jobid Parameter SQL Injection
easy-media-gallery 2014-08-01 Easy Media Gallery 1.2.25 - includes/emg-settings.php spg...
email-newsletter 2014-08-01 Email Newsletter <= 8.0 - Information Disclosure
event-registration 2016-05-11 Event Registration 6.02.02 - SQL Injection & Stored XSS
events-manager 2014-08-01 Events Manager 5.3.8 - Multiple Cross-Site Scripting (XSS)
events-manager 2014-08-01 Events Manager 5.3.8 - Multiple Cross-Site Scripting (XSS)
ezpz-one-click-backup 2014-08-01 EZPZ One Click Backup <= 12.03.10 - Unauthenticated Comma...
feature-comments 2014-08-01 Featured Comments 1.2.1 - wp-admin/admin-ajax.php Comment...
fgallery 2014-08-01 fGallery 2.4.1 - fimrss.php SQL Injection
fmoblog 2014-08-01 fMoblog 2.1 - (id) SQL Injection