WordPress Plugin Vulnerabilities

0-9 - A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z
Name Added Title
weblizar-pinterest-feeds 2018-01-22 Pinterest Feed <= 1.1.1 - Authenticated XSS & CSRF
wp-concours 2017-12-20 WordPress Concours <= 1.1 - Authenticated Cross-Site Scri...
bws-latest-posts 2017-04-13 Multiple BestWebSoft Plugins - Authenticated Reflected GE...
directdownload 2017-01-18 Direct Download for WooCommerce <= 1.15 - Unauthenticated...
responsive-poll 2017-01-11 Responsive Poll 1.6.4,1.7.4 - Cross-Site Scripting (XSS) ...
wp-mailster 2017-12-06 WP Mailster <= 1.5.4 - Unauthenticated Cross-Site Scripti...
multi-step-form 2018-07-30 Multi Step Form <= 1.2.5 - Multiple Unauthenticated Refle...
profilegrid-user-profiles-g... 2018-05-18 ProfileGrid – User Profiles, Groups and Communities <= 2....
comments-import-export-wooc... 2018-06-21 WordPress Comments Import & Export <= 2.0.4 - CSV Injection
bws-latest-posts 2017-04-13 Multiple BestWebSoft Plugins - Authenticated Reflected GE...
post-indexer 2016-11-21 Post Indexer <= 3.0.6.1 - PHP Object Injection via MitM
post-indexer 2016-11-21 Post Indexer <= 3.0.6.1 - Authenticated SQL Injection
relevanssi-premium 2016-11-21 Relevanssi Premium <= 1.14.4 - SQL Injection & PHP Object...
themeisle-companion 2018-12-11 Orbit Fox by ThemeIsle <= 2.6.3 -Does not properly Authen...
wp-splashing-images 2018-01-29 Splashing Images <= 2.1 - Authenticated PHP Object Injection
wp-splashing-images 2018-01-29 Splashing Images <= 2.1 - Cross-Site Scripting (XSS)
basic-contact-form 2017-09-28 Basic Contact Form <= 1.0.3 - Potential Unauthenticated S...
404-redirection-manager 2017-01-14 404 Redirection Manager 1.0 - SQL Injection
wechat-broadcast 2018-09-24 Wechat Broadcast <= 1.2.0 - Local/Remote File Inclusion
mobile-friendly-app-builder... 2017-03-08 mobile-friendly-app-builder-by-easytouch 3.0 - Unauthenti...
mobile-app-builder-by-wappress 2017-03-08 WordPress Mobile app Builder 1.05 - Unauthenticated File ...
zen-mobile-app-native 2017-03-01 Mobile App Native <= 3.0 - Remote File Upload
site-reviews 2018-06-28 Site Reviews <= 2.15.2 - Cross-Site Scripting (XSS)
BraftonWordpressPlugin 2016-09-07 brafton WordPress Plugin <=3.4.7 - Reflected XSS
inazo-advanced-ads-management 2016-09-16 Advanced ads Management <= 1.3 - Authenticated Stored Cro...
affiliate-ads-builder-for-c... 2018-01-08 Affiliate Ads for Clickbank Products <= 1.6 - Stored Cros...
wp-file-manager 2018-09-09 File Manager <= 2.9 - Authenticated Cross-Site Scripting ...
vospari-forms 2017-07-16 Vospari Forms <= 1.3 - Cross-Site Scripting (XSS)
dwnldr 2016-07-19 Dwnldr 1.0 - Unauthenticated Stored Cross-Site Scripting ...
smart-marketing-for-wp 2017-12-07 Smart Marketing SMS and Newsletters Forms <= 1.1.1 - Unau...
wp-site-protect 2018-03-19 WP Site Protect 1.0 - Cross-Site Scripting (XSS)
real3d-flipbook 2016-07-05 Real3D FlipBook - Multiple Vulnerabilities