WordPress Plugin Vulnerabilities

0-9 - A - B - C - D - E - F - G - H - I - J - K - L - M - N - O - P - Q - R - S - T - U - V - W - X - Y - Z
Name Published Title
yith-maintenance-mode 2015-08-21 YITH Maintenance Mode <= 1.1.4 - Authenticated Reflected ...
404-to-301 2016-08-27 404 to 301 <= 2.3.0 - Unauthenticated Stored Cross-Site S...
alpine-photo-tile-for-insta... 2017-03-01 Alpine PhotoTile - Authenticated Reflected Cross-Site Scr...
gallery-images 2016-11-23 Huge IT Image Gallery <= 2.0.5 - Stored Cross-Site Script...
master-slider 2016-07-13 Master Slider <= 2.7.1 - Reflected Cross-Site Scripting (...
slideshow-gallery 2018-11-15 Slideshow Gallery <= 1.6.8 - XSS and SQLi
subscribe-to-comments-reloaded 2015-08-20 Subscribe To Comments Reloaded <= 150611 - Authenticated ...
ultimate-member 2019-07-22 Ultimate Member <= 2.0.53 - Cross-Site Scripting (XSS)
visitor-maps 2015-08-20 Visitor Maps & Who's Online <= 1.5.8.6 - Authenticated St...
wp-database-backup 2016-08-01 WP Database Backup < 4.3.1 - CSRF & XSS
wp-google-map-plugin 2016-07-27 WP Google Map Plugin < 3.1.2 - XSS
floating-social-media-icon 2015-08-19 Floating Social Media Icon <= 2.1 - Authenticated Stored ...
jw-player-plugin-for-wordpress 2015-08-19 JW Player 6 Plugin for Wordpress <= 2.1.14 - Authenticate...
wp-google-fonts 2015-08-19 WP Google Fonts <= 3.1.3 - Authenticated Reflected Cross-...
wp-social-bookmarking-light 2015-08-19 WP Social Bookmarking Light <= 1.7.9 - Authenticated Stor...
fossura-tag-miner 2015-08-18 Tag Miner <= 1.1.2 - Cross-Site Request Forgery (CSRF) & XSS
taxonomy-terms-order 2018-02-28 Category Order and Taxonomy Terms Order <= 1.5.2.2 - Auth...
wp-ultimate-csv-importer 2018-12-19 WP Ultimate CSV Importer <= 5.6 - CSRF
rocket-responsive-gallery 2015-08-17 WordPress Gallery Plugin 1.0 - Authenticated Stored Cross...
duplicator 2018-09-05 Duplicator <= 1.2.40 - Arbitrary Code Execution
google-adsense-and-hotel-bo... 2015-08-15 Google Adsense & Hotel Booking <= 1.0.5 - Open Proxy
wp-latest-posts 2015-08-15 WP Latest Posts < 3.7.5 - XSS
json-rest-api 2015-08-14 WP REST API (WP API) <= 1.2.2 - Cross-Site Scripting (XSS)
wp-polls 2016-07-29 WP-Polls <= 2.73 - Authenticated Reflected Cross-Site Scr...
ad-inserter 2019-07-15 Ad Inserter <= 2.4.21 - Authenticated Remote Code Execution