WordPress 3.1 is an extremely outdated version released over a decade ago, and it poses a serious security risk to any website still running it. Our security research has identified 538 known vulnerabilities in this version, including 49 critical-level flaws that could allow attackers to take complete control of your website. If you're running WordPress 3.1, your site is likely already a target for hackers and malicious bots scanning the internet for vulnerable installations.
The vulnerabilities range from SQL injection attacks that could expose your entire database to PHP object injection flaws that enable remote code execution. Popular plugins commonly used with older WordPress versions—like Dokan Pro, GiveWP, Store Locator, and others—contain exploits that attackers actively use to compromise websites. Continuing to operate on WordPress 3.1 puts your business data, customer information, and reputation at severe risk.
This guide will help you identify if you're running this vulnerable version and provide clear steps to upgrade and secure your WordPress installation immediately.
WordPress 3.1 is an ancient version of the world's most popular website-building platform, released in February 2011. At that time, it was considered modern and secure, but over the past 13+ years, thousands of security vulnerabilities have been discovered not only in WordPress itself but in the plugins and themes that extend its functionality. WordPress 3.1 lacks all the security patches, performance improvements, and modern features that have been added in subsequent versions.
Think of WordPress 3.1 like an old house with broken locks and no security system—it might have worked fine when it was built, but it's now extremely vulnerable to break-ins. Every day, hackers use automated tools to find websites running outdated WordPress versions and exploit known vulnerabilities to steal data, inject malware, or use the site to attack other websites. Running WordPress 3.1 in 2024 is essentially leaving your front door wide open to cybercriminals.
538 CVEs found. The most critical are explained below.
The Dokan Pro plugin has a serious flaw that allows hackers to manipulate your website's database without logging in. Attackers can exploit this through a specific setting called the 'code' parameter that wasn't properly secured.
Impact: Attackers could steal customer data, modify product information, access sensitive business records, or completely corrupt your database.
↗ View on NVDThe GiveWP donation plugin contains a vulnerability where hackers can inject malicious code through the donation title field. This code runs directly on your server without needing login credentials.
Impact: Attackers could take control of your website, steal donor information, insert malware, or redirect visitors to malicious sites.
↗ View on NVDThe Store Locator plugin versions 2.3-3.11 allow attackers to directly access and manipulate your website's database through the 'sl_custom_field' parameter. This is an old vulnerability that still affects many sites.
Impact: Criminals could extract customer lists, business data, or modify store location information displayed to visitors.
↗ View on NVDThe AccessPress Anonymous Post Pro plugin fails to properly validate file uploads, allowing attackers to upload dangerous files that bypass your security restrictions. They can override your file type and size limitations.
Impact: Hackers could upload malware, scripts, or ransomware to your server, potentially compromising your entire website and server.
↗ View on NVDThe WordPress Flash Uploader plugin contains a critical flaw in how it handles image processing settings. Attackers can manipulate these settings to execute arbitrary commands on your server.
Impact: Attackers could gain full control of your website server, steal files, install backdoors, or use your server for other attacks.
↗ View on NVDThe Rencontre plugin has a flaw in its widget code that allows attackers to inject commands directly into your database without authentication. This happens through improper input validation in the plugin's widget functionality.
Impact: Attackers could steal user profiles, member information, or completely alter your website's content and functionality.
↗ View on NVDShowing first 10 of 532. View all on NVD ↗
| CVE ID | Severity | Score | Published | Description |
|---|---|---|---|---|
| CVE-2019-15659 | CRITICAL | 9.8 | 2019-08-27 | The pie-register plugin before 3.1.2 for WordPress has SQL injection, a different issue than CVE-2018-10969. |
| CVE-2015-9435 | CRITICAL | 9.8 | 2019-09-26 | The oauth2-provider plugin before 3.1.5 for WordPress has incorrect generation of random numbers. |
| CVE-2020-6009 | CRITICAL | 9.8 | 2020-04-01 | LearnDash Wordpress plugin version below 3.1.6 is vulnerable to Unauthenticated SQL Injection. |
| CVE-2021-24375 | CRITICAL | 9.8 | 2021-07-06 | Lack of authentication or validation in motor_load_more, motor_gallery_load_more, motor_quick_view and motor_project_quick_view AJAX handlers of the Motor WordPress theme before 3… |
| CVE-2021-34621 | CRITICAL | 9.8 | 2021-07-07 | A vulnerability in the user registration component found in the ~/src/Classes/RegistrationAuth.php file of the ProfilePress WordPress plugin made it possible for users to register… |
| CVE-2021-34622 | CRITICAL | 9.8 | 2021-07-07 | A vulnerability in the user profile update component found in the ~/src/Classes/EditUserProfile.php file of the ProfilePress WordPress plugin made it possible for users to escalat… |
| CVE-2021-34623 | CRITICAL | 9.8 | 2021-07-07 | A vulnerability in the image uploader component found in the ~/src/Classes/ImageUploader.php file of the ProfilePress WordPress plugin made it possible for users to upload arbitra… |
| CVE-2021-34624 | CRITICAL | 9.8 | 2021-07-07 | A vulnerability in the file uploader component found in the ~/src/Classes/FileUploader.php file of the ProfilePress WordPress plugin made it possible for users to upload arbitrary… |
| CVE-2022-1020 | CRITICAL | 9.8 | 2022-04-18 | The Product Table for WooCommerce (wooproducttable) WordPress plugin before 3.1.2 does not have authorisation and CSRF checks in the wpt_admin_update_notice_option AJAX action (av… |
| CVE-2022-0769 | CRITICAL | 9.8 | 2022-04-25 | The Users Ultra WordPress plugin through 3.1.0 fails to properly sanitize and escape the data_target parameter before it is being interpolated in an SQL statement and then execute… |
| CVE-2022-1556 | CRITICAL | 9.8 | 2022-05-30 | The StaffList WordPress plugin before 3.1.5 does not properly sanitise and escape a parameter before using it in a SQL statement when searching for Staff in the admin dashboard, l… |
| CVE-2022-3600 | CRITICAL | 9.8 | 2022-11-21 | The Easy Digital Downloads WordPress plugin before 3.1.0.2 does not validate data when its output in a CSV file, which could lead to CSV injection. |
| CVE-2023-23489 | CRITICAL | 9.8 | 2023-01-20 | The Easy Digital Downloads WordPress Plugin, versions 3.1.0.2 & 3.1.0.3, is affected by an unauthenticated SQL injection vulnerability in the 's' parameter of its 'edd_download_se… |
| CVE-2023-1730 | CRITICAL | 9.8 | 2023-05-02 | The SupportCandy WordPress plugin before 3.1.5 does not validate and escape user input before using it in an SQL statement, which could allow unauthenticated attackers to perform … |
| CVE-2020-36724 | CRITICAL | 9.8 | 2023-06-07 | The Wordable plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.1.1. This is due to the use of a user supplied hashing algorithm passe… |
| CVE-2024-1514 | CRITICAL | 9.8 | 2024-02-28 | The WP eCommerce plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'cart_contents' parameter in all versions up to, and including, 3.15.1 due to insuffi… |
| CVE-2024-3729 | CRITICAL | 9.8 | 2024-05-02 | The Frontend Admin by DynamiApps plugin for WordPress is vulnerable to improper missing encryption exception handling on the 'fea_encrypt' function in all versions up to, and inc… |
| CVE-2024-8353 | CRITICAL | 9.8 | 2024-09-28 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.16.1 via deserialization o… |
| CVE-2024-9634 | CRITICAL | 9.8 | 2024-10-16 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.16.3 via deserialization o… |
| CVE-2024-9893 | CRITICAL | 9.8 | 2024-10-16 | The Nextend Social Login Pro plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 3.1.14. This is due to insufficient verification on … |
| CVE-2024-9933 | CRITICAL | 9.8 | 2024-10-26 | The WatchTowerHQ plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.10.1. This is due to the 'watchtower_ota_token' default value is e… |
| CVE-2024-10589 | CRITICAL | 9.8 | 2024-11-09 | The Leopard - WordPress Offload Media plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability che… |
| CVE-2024-12877 | CRITICAL | 9.8 | 2025-01-11 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.19.2 via deserialization o… |
| CVE-2024-13375 | CRITICAL | 9.8 | 2025-01-18 | The Adifier System plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.1.7. This is due to the plugin not prope… |
| CVE-2024-12822 | CRITICAL | 9.8 | 2025-01-30 | The Media Manager for UserPro plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on th… |
| CVE-2025-1061 | CRITICAL | 9.8 | 2025-02-07 | The Nextend Social Login Pro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.1.16. This is due to insufficient verification on the … |
| CVE-2025-0912 | CRITICAL | 9.8 | 2025-03-04 | The Donations Widget plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.19.4 via deserialization of untrusted input from the Donati… |
| CVE-2025-1771 | CRITICAL | 9.8 | 2025-03-15 | The Traveler theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.1.8 via the 'hotel_alone_load_more_post' function 'style' parameter.… |
| CVE-2025-3439 | CRITICAL | 9.8 | 2025-04-11 | The Everest Forms – Contact Form, Quiz, Survey, Newsletter & Payment Form Builder for WordPress plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, a… |
| CVE-2025-4564 | CRITICAL | 9.8 | 2025-05-15 | The TicketBAI Facturas para WooCommerce plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation via the 'delpdf' action in all versi… |
| CVE-2025-9083 | CRITICAL | 9.8 | 2025-09-18 | The Ninja Forms WordPress plugin before 3.11.1 unserializes user input via form field, which could allow Unauthenticated users to perform PHP Object Injection when a suitable gad… |
| CVE-2025-9209 | CRITICAL | 9.8 | 2025-10-03 | The RestroPress – Online Food Ordering System plugin for WordPress is vulnerable to Authentication Bypass in versions 3.0.0 to 3.1.9.2. This is due to the plugin exposing user pri… |
| CVE-2025-11749 | CRITICAL | 9.8 | 2025-11-05 | The AI Engine plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.1.3 via the /mcp/v1/ REST API endpoint that exposes the … |
| CVE-2025-15030 | CRITICAL | 9.8 | 2026-02-02 | The User Profile Builder WordPress plugin before 3.15.2 does not have a proper password reset process, allowing a few unauthenticated requests to reset the password of any user b… |
| CVE-2026-6279 | CRITICAL | 9.8 | 2026-05-21 | The Avada Builder (fusion-builder) plugin for WordPress is vulnerable to Unauthenticated Remote Code Execution via PHP Function Injection in versions up to and including 3.15.2. T… |
| CVE-2021-25010 | CRITICAL | 9.6 | 2022-02-28 | The Post Snippets WordPress plugin before 3.1.4 does not have CSRF check when importing files, allowing attacker to make a logged In admin import arbitrary snippets. Furthermore, … |
| CVE-2023-49752 | CRITICAL | 9.3 | 2023-12-20 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Spoon themes Adifier - Classified Ads WordPress Theme.This issue affects Adif… |
| CVE-2025-24759 | CRITICAL | 9.3 | 2025-07-16 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in CMSJunkie - WordPress Business Directory Plugins WP-BusinessDirectory wp-busi… |
| CVE-2025-48089 | CRITICAL | 9.3 | 2025-11-06 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Rainbow-Themes Education WordPress Theme | HiStudy histudy allows SQL Injecti… |
| CVE-2020-7048 | CRITICAL | 9.1 | 2020-01-16 | The WordPress plugin, WP Database Reset through 3.1, contains a flaw that allowed any unauthenticated user to reset any table in the database to the initial WordPress set-up state… |
| CVE-2024-6366 | CRITICAL | 9.1 | 2024-07-29 | The User Profile Builder WordPress plugin before 3.11.8 does not have proper authorisation, allowing unauthenticated users to upload media files via the async upload functionalit… |
| CVE-2024-7385 | CRITICAL | 9.1 | 2024-09-25 | The WordPress Simple HTML Sitemap plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, 3.1 due to insufficient escaping… |
| CVE-2026-4283 | CRITICAL | 9.1 | 2026-03-24 | The WP DSGVO Tools (GDPR) plugin for WordPress is vulnerable to unauthorized account destruction in all versions up to, and including, 3.1.38. This is due to the `super-unsubscrib… |
| CVE-2011-3122 | HIGH | 10.0 | 2011-08-10 | Unspecified vulnerability in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2 has unknown impact and attack vectors related to "Media security." |
| CVE-2011-3125 | HIGH | 10.0 | 2011-08-10 | Unspecified vulnerability in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2 has unknown impact and attack vectors related to "Various security hardening." |
| CVE-2011-3129 | HIGH | 9.3 | 2011-08-10 | The file upload functionality in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2, when running "on hosts with dangerous security settings," has unknown impact and attack vectors,… |
| CVE-2017-18510 | HIGH | 8.8 | 2019-08-14 | The custom-sidebars plugin before 3.1.0 for WordPress has CSRF related to set location, import actions, and export actions. |
| CVE-2017-18513 | HIGH | 8.8 | 2019-08-14 | The responsive-menu plugin before 3.1.4 for WordPress has no CSRF protection mechanism for the admin interface. |
| CVE-2020-7047 | HIGH | 8.8 | 2020-01-16 | The WordPress plugin, WP Database Reset through 3.1, contains a flaw that gave any authenticated user, with minimal permissions, the ability (with a simple wp-admin/admin.php?db-r… |
| CVE-2021-24159 | HIGH | 8.8 | 2021-04-05 | Due to the lack of sanitization and lack of nonce protection on the custom CSS feature, an attacker could craft a request to inject malicious JavaScript on a site using the Contac… |
| CVE-2021-24188 | HIGH | 8.8 | 2021-05-14 | Low privileged users can use the AJAX action 'cp_plugins_do_button_job_later_callback' in the WP Content Copy Protection & No Right Click WordPress plugin before 3.1.5, to install… |
| CVE-2021-24579 | HIGH | 8.8 | 2021-08-30 | The bt_bb_get_grid AJAX action of the Bold Page Builder WordPress plugin before 3.1.6 passes user input into the unserialize() function without any validation or sanitisation, whi… |
| CVE-2022-3240 | HIGH | 8.8 | 2022-11-15 | The "Follow Me Plugin" plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.1.1. This is due to missing nonce validation on the Fol… |
| CVE-2023-23490 | HIGH | 8.8 | 2023-01-20 | The Survey Maker WordPress Plugin, version < 3.1.2, is affected by an authenticated SQL injection vulnerability in the 'surveys_ids' parameter of its 'ays_surveys_export_json' act… |
| CVE-2023-28663 | HIGH | 8.8 | 2023-03-22 | The Formidable PRO2PDF WordPress Plugin, version < 3.11, is affected by an authenticated SQL injection vulnerability in the ‘fieldmap’ parameter in the fpropdf_export_file action. |
| CVE-2023-1406 | HIGH | 8.8 | 2023-04-10 | The JetEngine WordPress plugin before 3.1.3.1 includes uploaded files without adequately ensuring that they are not executable, leading to a remote code execution vulnerability. |
| CVE-2023-3124 | HIGH | 8.8 | 2023-06-07 | The Elementor Pro plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the update_page_option function in versions up to, and … |
| CVE-2023-1615 | HIGH | 8.8 | 2023-06-09 | The Ultimate Addons for Contact Form 7 plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in versions up to, and including, 3.1.23. This makes it possible … |
| CVE-2023-2719 | HIGH | 8.8 | 2023-06-19 | The SupportCandy WordPress plugin before 3.1.7 does not properly sanitise and escape the `id` parameter for an Agent in the REST API before using it in an SQL statement, leading t… |
| CVE-2024-2417 | HIGH | 8.8 | 2024-05-02 | The User Registration – Custom Registration Form, Login Form, and User Profile WordPress Plugin plugin for WordPress is vulnerable to privilege escalation due to a missing capabil… |
| CVE-2024-3499 | HIGH | 8.8 | 2024-05-02 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.1.0 via the generate_navigation_markup function… |
| CVE-2024-3808 | HIGH | 8.8 | 2024-05-14 | The Porto Theme - Functionality plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.1.0 via the 'porto_portfolios' shortcode 'portfo… |
| CVE-2024-3954 | HIGH | 8.8 | 2024-05-14 | The Ditty plugin for WordPress is vulnerable to PHP Object Injection in all versions up to 3.1.38 via deserialization of untrusted input when adding a new ditty. This makes it pos… |
| CVE-2024-3750 | HIGH | 8.8 | 2024-05-16 | The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to unauthorized modification and retrieval of data due to a missing capability check on … |
| CVE-2024-3518 | HIGH | 8.8 | 2024-05-22 | The Media Library Assistant plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode(s) in all versions up to, and including, 3.15 due to insufficient escapi… |
| CVE-2024-5605 | HIGH | 8.8 | 2024-06-20 | The Media Library Assistant plugin for WordPress is vulnerable to time-based SQL Injection via the ‘order’ parameter within the mla_tag_cloud Shortcode in all versions up to, and … |
| CVE-2024-5726 | HIGH | 8.8 | 2024-07-18 | The Timeline Event History plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.1 via deserialization of untrusted input 'timelines-d… |
| CVE-2024-6823 | HIGH | 8.8 | 2024-08-13 | The Media Library Assistant plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation involving the mla-inline-edit-upload-scripts AJAX acti… |
| CVE-2024-4389 | HIGH | 8.8 | 2024-08-14 | The Slider and Carousel slider by Depicter plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the uploadFile function in all versi… |
| CVE-2024-11194 | HIGH | 8.8 | 2024-11-19 | The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation d… |
| CVE-2024-11936 | HIGH | 8.8 | 2025-01-26 | The Zox News theme for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the 'backup_options'… |
| CVE-2024-12821 | HIGH | 8.8 | 2025-01-30 | The Media Manager for UserPro plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on th… |
| CVE-2024-13643 | HIGH | 8.8 | 2025-02-11 | The Zox News - Professional WordPress News & Magazine Theme plugin for WordPress is vulnerable to unauthorized data modification. This vulnerability can lead to privilege escalati… |
| CVE-2024-12811 | HIGH | 8.8 | 2025-02-28 | The Traveler theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.1.9 via shortcodes. This makes it possible for authenticated attacke… |
| CVE-2025-1279 | HIGH | 8.8 | 2025-04-25 | The BM Content Builder plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the ux_cb… |
| CVE-2025-5395 | HIGH | 8.8 | 2025-06-11 | The WordPress Automatic Plugin plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'core.php' file in all versions up to, … |
| CVE-2025-9018 | HIGH | 8.8 | 2025-09-11 | The Time Tracker plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the 'tt_update_table_function' and 'tt_delet… |
| CVE-2025-15157 | HIGH | 8.8 | 2026-02-13 | The Starfish Review Generation & Marketing for WordPress plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a mis… |
| CVE-2026-1426 | HIGH | 8.8 | 2026-02-18 | The Advanced AJAX Product Filters plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.1.9.6 via deserialization of untrusted input i… |
| CVE-2026-3220 | HIGH | 8.8 | 2026-05-18 | The Autoptimize WordPress plugin before 3.1.15, Clearfy Cache WordPress plugin before 2.4.2, Speed Optimizer WordPress plugin before 7.7.9 are vulnerable to unauthenticated Stor… |
| CVE-2026-8787 | HIGH | 8.8 | 2026-05-27 | The Firebase Support & Chat Management plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 3.1.1. This is due to the `firebase_auth()`… |
| CVE-2025-32629 | HIGH | 8.6 | 2025-04-11 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in CMSJunkie - WordPress Business Directory Plugins WP-BusinessDirectory wp-businessdi… |
| CVE-2025-8085 | HIGH | 8.6 | 2025-09-08 | The Ditty WordPress plugin before 3.1.58 lacks authorization and authentication for requests to its displayItems endpoint, allowing unauthenticated visitors to make requests to a… |
| CVE-2026-3830 | HIGH | 8.6 | 2026-04-13 | The Product Filter for WooCommerce by WBW WordPress plugin before 3.1.3 does not sanitize and escape a parameter before using it in a SQL statement, allowing unauthenticated users… |
| CVE-2023-6964 | HIGH | 8.5 | 2024-04-09 | The Gutenberg Blocks by Kadence Blocks – Page Builder Features plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.1.26 via t… |
| CVE-2022-29411 | HIGH | 8.3 | 2022-04-28 | SQL Injection (SQLi) vulnerability in Mufeng's Hermit 音乐播放器 plugin <= 3.1.6 on WordPress allows attackers to execute SQLi attack via (&id). |
| CVE-2024-0324 | HIGH | 8.2 | 2024-02-05 | The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to unauthorized modification of data due to a mis… |
| CVE-2021-38342 | HIGH | 8.1 | 2021-08-30 | The Nested Pages WordPress plugin <= 3.1.15 was vulnerable to Cross-Site Request Forgery via the `npBulkAction`s and `npBulkEdit` `admin_post` actions, which allowed attackers to … |
| CVE-2021-24647 | HIGH | 8.1 | 2021-11-08 | The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin before 3.1.7.6 has a flaw in the social login impl… |
| CVE-2025-7665 | HIGH | 8.1 | 2025-09-19 | The Miniorange OTP Verification with Firebase plugin for WordPress is vulnerable to privilege escalation due to a missing capability check on the 'handle_mofirebase_form_options' … |
| CVE-2026-7647 | HIGH | 8.1 | 2026-05-02 | The Profile Builder Pro plugin for WordPress is vulnerable to PHP Object Injection in all versions up to and including 3.14.5. This is due to the use of PHP's maybe_unserialize() … |
| CVE-2025-9693 | HIGH | 8.0 | 2025-09-11 | The User Meta – User Profile Builder and User management plugin plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the postI… |
| CVE-2011-3130 | HIGH | 7.5 | 2011-08-10 | wp-includes/taxonomy.php in WordPress 3.1 before 3.1.3 and 3.2 before Beta 2 has unknown impact and attack vectors related to "Taxonomy query hardening," possibly involving SQL in… |
| CVE-2015-2314 | HIGH | 7.5 | 2015-03-17 | SQL injection vulnerability in the WPML plugin before 3.1.9 for WordPress allows remote attackers to execute arbitrary SQL commands via the lang parameter in the HTTP Referer head… |
| CVE-2015-2792 | HIGH | 7.5 | 2015-03-30 | The WPML plugin before 3.1.9 for WordPress does not properly handle multiple actions in a request, which allows remote attackers to bypass nonce checks and perform arbitrary actio… |
| CVE-2015-4133 | HIGH | 7.5 | 2015-05-28 | Unrestricted file upload vulnerability in admin/scripts/FileUploader/php.php in the ReFlex Gallery plugin before 3.1.4 for WordPress allows remote attackers to execute arbitrary P… |
| CVE-2015-9318 | HIGH | 7.5 | 2019-08-20 | The awesome-support plugin before 3.1.7 for WordPress has a security issue in which shortcodes are allowed in replies. |
| CVE-2017-18592 | HIGH | 7.5 | 2019-08-27 | The woocommerce-catalog-enquiry plugin before 3.1.0 for WordPress has an incorrect wp_upload directory for file uploads. |
| CVE-2020-13700 | HIGH | 7.5 | 2020-06-24 | An issue was discovered in the acf-to-rest-api plugin through 3.1.0 for WordPress. It allows an insecure direct object reference via permalinks manipulation, as demonstrated by a … |
| CVE-2021-34639 | HIGH | 7.5 | 2021-08-05 | Authenticated File Upload in WordPress Download Manager <= 3.1.24 allows authenticated (Author+) users to upload files with a double extension, e.g. "payload.php.png" which is exe… |
| CVE-2022-4794 | HIGH | 7.5 | 2023-01-30 | The AAWP WordPress plugin before 3.12.3 can be used to abuse trusted domains to load malware or other files through it (Reflected File Download) to bypass firewall rules in compan… |
| CVE-2023-6113 | HIGH | 7.5 | 2024-01-01 | The WP STAGING WordPress Backup Plugin before 3.1.3 and WP STAGING Pro WordPress Backup Plugin before 5.1.3 do not prevent visitors from leaking key information about ongoing back… |
| CVE-2024-11912 | HIGH | 7.5 | 2024-12-18 | The Travel Booking WordPress Theme theme for WordPress is vulnerable to blind time-based SQL Injection via the ‘order_id’ parameter in all versions up to, and including, 3.1.6 due… |
| CVE-2025-2111 | HIGH | 7.5 | 2025-04-19 | The Insert Headers And Footers plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.1. This is due to missing or incorrect no… |
| CVE-2025-11452 | HIGH | 7.5 | 2025-11-08 | The Asgaros Forum plugin for WordPress is vulnerable to SQL Injection via the '$_COOKIE['asgarosforum_unread_exclude']' cookie in all versions up to, and including, 3.1.0 due to i… |
| CVE-2025-14169 | HIGH | 7.5 | 2025-12-12 | The FunnelKit - Funnel Builder for WooCommerce Checkout plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'opid' parameter in all versions up to, and in… |
| CVE-2025-11924 | HIGH | 7.5 | 2025-12-17 | The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 3.13.2. Thi… |
| CVE-2025-14437 | HIGH | 7.5 | 2025-12-18 | The Hummingbird Performance plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.18.0 via the 'request' function. This make… |
| CVE-2026-2268 | HIGH | 7.5 | 2026-02-10 | The Ninja Forms plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.14.0. This is due to the unsafe application of the `ni… |
| CVE-2026-2262 | HIGH | 7.5 | 2026-04-18 | The Easy Appointments plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.12.21 via the `/wp-json/wp/v2/eablocks/ea_appoin… |
| CVE-2026-2892 | HIGH | 7.5 | 2026-04-30 | The Otter Blocks plugin for WordPress is vulnerable to Purchase Verification Bypass in all versions up to, and including, 3.1.4. This is due to the 'get_customer_data' method rely… |
| CVE-2026-4798 | HIGH | 7.5 | 2026-05-13 | The Avada Builder plugin for WordPress is vulnerable to time-based SQL Injection via the ‘product_order’ parameter in all versions up to, and including, 3.15.1 due to insufficient… |
| CVE-2026-9011 | HIGH | 7.5 | 2026-05-22 | The Ditty – Responsive News Tickers, Sliders, and Lists plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.1.65. This is due to the… |
| CVE-2022-29410 | HIGH | 7.4 | 2022-04-28 | Authenticated SQL Injection (SQLi) vulnerability in Mufeng's Hermit 音乐播放器 plugin <= 3.1.6 on WordPress allows attackers with Subscriber or higher user roles to execute SQLi attack… |
| CVE-2024-13345 | HIGH | 7.3 | 2025-02-13 | The Avada Builder plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.11.13. This is due to the software allowing users to … |
| CVE-2021-24348 | HIGH | 7.2 | 2021-06-14 | The menu delete functionality of the Side Menu – add fixed side buttons WordPress plugin before 3.1.5, available to Administrator users takes the did GET parameter and uses it int… |
| CVE-2021-24537 | HIGH | 7.2 | 2021-11-08 | The Similar Posts WordPress plugin through 3.1.5 allow high privilege users to execute arbitrary PHP code in an hardened environment (ie with DISALLOW_FILE_EDIT, DISALLOW_FILE_MOD… |
| CVE-2021-24628 | HIGH | 7.2 | 2021-11-08 | The Wow Forms WordPress plugin through 3.1.3 does not sanitise or escape a 'did' GET parameter before using it in a SQL statement, when deleting a form in the admin dashboard, lea… |
| CVE-2021-24860 | HIGH | 7.2 | 2021-11-29 | The BSK PDF Manager WordPress plugin before 3.1.2 does not validate and escape the orderby and order parameters before using them in a SQL statement, leading to a SQL injection is… |
| CVE-2021-25064 | HIGH | 7.2 | 2022-03-28 | The Wow Countdowns WordPress plugin through 3.1.2 does not sanitize user input into the 'did' parameter and uses it in a SQL statement, leading to an authenticated SQL Injection. |
| CVE-2022-0887 | HIGH | 7.2 | 2022-04-04 | The Easy Social Icons WordPress plugin before 3.1.4 does not sanitize the selected_icons attribute to the cnss_widget before using it in an SQL statement, leading to a SQL injecti… |
| CVE-2022-1008 | HIGH | 7.2 | 2022-04-11 | The One Click Demo Import WordPress plugin before 3.1.0 does not validate the imported file, allowing high privilege users such as admin to upload arbitrary files (such as PHP) ev… |
| CVE-2022-33970 | HIGH | 7.2 | 2022-07-27 | Authenticated WordPress Options Change vulnerability in Biplob018 Shortcode Addons plugin <= 3.1.2 at WordPress. |
| CVE-2022-1123 | HIGH | 7.2 | 2022-08-29 | The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) WordPress plugin before 3.12.5 does not properly sanitize some parameters before inserting them into SQL queries. A… |
| CVE-2023-0038 | HIGH | 7.2 | 2023-01-03 | The "Survey Maker – Best WordPress Survey Plugin" plugin for WordPress is vulnerable to Stored Cross-Site Scripting via survey answers in versions up to, and including, 3.1.3 due … |
| CVE-2023-0084 | HIGH | 7.2 | 2023-03-02 | The Metform Elementor Contact Form Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via text areas on forms in versions up to, and including, 3.1.2 due to… |
| CVE-2023-0329 | HIGH | 7.2 | 2023-05-30 | The Elementor Website Builder WordPress plugin before 3.12.2 does not properly sanitize and escape the Replace URL parameter in the Tools module before using it in a SQL statement… |
| CVE-2021-4358 | HIGH | 7.2 | 2023-06-07 | The WP DSGVO Tools (GDPR) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an unknown parameter in versions up to, and including, 3.1.23 due to insufficient i… |
| CVE-2023-2805 | HIGH | 7.2 | 2023-06-19 | The SupportCandy WordPress plugin before 3.1.7 does not properly sanitise and escape the agents[] parameter in the set_add_agent_leaves AJAX function before using it in a SQL stat… |
| CVE-2024-4097 | HIGH | 7.2 | 2024-05-02 | The Cost Calculator Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the SVG upload feature in all versions up to, and including, 3.1.67 due to insuff… |
| CVE-2024-6447 | HIGH | 7.2 | 2024-07-11 | The FULL – Cliente plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the license plan parameter in all versions up to, and including, 3.1.12 due to insufficien… |
| CVE-2024-9130 | HIGH | 7.2 | 2024-09-27 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to time-based SQL Injection via the ‘order’ parameter in all versions up to, and including… |
| CVE-2016-15041 | HIGH | 7.2 | 2024-10-16 | The MainWP Dashboard – The Private WordPress Manager for Multiple Website Maintenance plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘mwp_setup_purchase… |
| CVE-2025-4224 | HIGH | 7.2 | 2025-06-03 | The wpForo + wpForo Advanced Attachments plugin for WordPress is vulnerable to Stored Cross-Site Scripting via media upload names in all versions up to, and including, 3.1.3 due t… |
| CVE-2025-2800 | HIGH | 7.2 | 2025-07-16 | The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘organizer_name' par… |
| CVE-2026-2296 | HIGH | 7.2 | 2026-02-18 | The Product Addons for Woocommerce – Product Options with Custom Fields plugin for WordPress is vulnerable to Code Injection in all versions up to, and including, 3.1.0. This is d… |
| CVE-2026-5694 | HIGH | 7.2 | 2026-04-15 | The Quick Interest Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'loan-amount' and 'loan-period' parameters in all versions up to, and including… |
| CVE-2023-49187 | HIGH | 7.1 | 2023-12-15 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spoonthemes Adifier - Classified Ads WordPress Theme allows Reflected XSS.Thi… |
| CVE-2025-23843 | HIGH | 7.1 | 2025-03-03 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wphrmanager WP-HR Manager: The Human Resources Plugin for WordPress wp-hr-man… |
| CVE-2025-32630 | HIGH | 7.1 | 2025-04-17 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CMSJunkie - WordPress Business Directory Plugins WP-BusinessDirectory wp-busi… |
| CVE-2025-12844 | HIGH | 7.1 | 2025-11-13 | The AI Engine plugin for WordPress is vulnerable to PHP Object Injection via PHAR Deserialization in all versions up to, and including, 3.1.8 via deserialization of untrusted inpu… |
| CVE-2013-2707 | MEDIUM | 6.8 | 2013-05-10 | Cross-site request forgery (CSRF) vulnerability in the Login With Ajax plugin before 3.1 for WordPress allows remote attackers to hijack the authentication of arbitrary users for … |
| CVE-2014-2340 | MEDIUM | 6.8 | 2014-04-03 | Cross-site request forgery (CSRF) vulnerability in the XCloner plugin before 3.1.1 for WordPress allows remote attackers to hijack the authentication of administrators for request… |
| CVE-2024-2761 | MEDIUM | 6.8 | 2024-04-19 | The Genesis Blocks WordPress plugin before 3.1.3 does not properly escape data input provided to some of its blocks, allowing using with at least contributor privileges to conduct… |
| CVE-2024-8679 | MEDIUM | 6.8 | 2024-12-07 | The Library Management System – Manage e-Digital Books Library plugin for WordPress is vulnerable to SQL Injection via the ‘value' parameter of the owt_lib_handler AJAX action in … |
| CVE-2024-3901 | MEDIUM | 6.8 | 2025-05-15 | The Genesis Blocks WordPress plugin through 3.1.3 does not properly escape attributes provided to some of its custom blocks, making it possible for users allowed to write posts (l… |
| CVE-2025-8084 | MEDIUM | 6.8 | 2025-11-18 | The AI Engine plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.1.8 via the rest_helpers_create_images function. This makes… |
| CVE-2023-1016 | MEDIUM | 6.6 | 2023-06-09 | The Intuitive Custom Post Order plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 3.1.4.1, due to insufficient escaping on the user supplied 'o… |
| CVE-2024-0668 | MEDIUM | 6.6 | 2024-02-05 | The Advanced Database Cleaner plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.1.3 via deserialization of untrusted input in the … |
| CVE-2024-9422 | MEDIUM | 6.6 | 2024-11-22 | The GEO my WP WordPress plugin before 4.5, gmw-premium-settings WordPress plugin before 3.1 does not sufficiently validate files to be uploaded, which could allow attackers to upl… |
| CVE-2015-2194 | MEDIUM | 6.5 | 2015-03-03 | Unrestricted file upload vulnerability in the fusion_options function in functions.php in the Fusion theme 3.1 for Wordpress allows remote authenticated users to execute arbitrary… |
| CVE-2014-8603 | MEDIUM | 6.5 | 2015-06-10 | cloner.functions.php in the XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! allows remote administrators to execute arbitrary code via shell metacharacters in the (1) fil… |
| CVE-2015-4336 | MEDIUM | 6.5 | 2015-06-17 | cloner.functions.php in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to execute arbitrary commands via a file containing filenames with shell metachara… |
| CVE-2015-4338 | MEDIUM | 6.5 | 2015-06-17 | Static code injection vulnerability in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to inject arbitrary PHP code into the language files via a Translat… |
| CVE-2015-9387 | MEDIUM | 6.5 | 2019-09-20 | The mtouch-quiz plugin before 3.1.3 for WordPress has wp-admin/options-general.php CSRF. |
| CVE-2015-9388 | MEDIUM | 6.5 | 2019-09-20 | The mtouch-quiz plugin before 3.1.3 for WordPress has wp-admin/edit.php CSRF with resultant XSS. |
| CVE-2021-34638 | MEDIUM | 6.5 | 2021-08-05 | Authenticated Directory Traversal in WordPress Download Manager <= 3.1.24 allows authenticated (Contributor+) users to obtain sensitive configuration file information, as well as … |
| CVE-2021-25098 | MEDIUM | 6.5 | 2022-03-07 | The Pricing Tables WordPress Plugin WordPress plugin before 3.1.3 does not verify the CSRF nonce when removing posts, allowing attackers to make a logged in admin remove arbitrary… |
| CVE-2024-0679 | MEDIUM | 6.5 | 2024-01-20 | The ColorMag theme for WordPress is vulnerable to unauthorized access due to a missing capability check on the plugin_action_callback() function in all versions up to, and includi… |
| CVE-2024-22150 | MEDIUM | 6.5 | 2024-01-31 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PWR Plugins Portfolio & Image Gallery for WordPress | PowerFolio allows Store… |
| CVE-2023-51532 | MEDIUM | 6.5 | 2024-02-01 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Icegram Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optin… |
| CVE-2024-3295 | MEDIUM | 6.5 | 2024-05-02 | The User Registration – Custom Registration Form, Login Form, and User Profile WordPress Plugin plugin for WordPress is vulnerable to unauthorized loss of data due to a missing ca… |
| CVE-2024-4260 | MEDIUM | 6.5 | 2024-07-23 | The Page Builder Gutenberg Blocks WordPress plugin before 3.1.12 does not prevent users from pinging arbitrary hosts via some of its shortcodes, which could allow high privilege … |
| CVE-2024-5940 | MEDIUM | 6.5 | 2024-08-20 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'handle_requ… |
| CVE-2024-9262 | MEDIUM | 6.5 | 2024-11-09 | The User Meta – User Profile Builder and User management plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 3.1.1 … |
| CVE-2024-11926 | MEDIUM | 6.5 | 2024-12-18 | The Travel Booking WordPress Theme theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the '__stPartnerCreateServiceRental'… |
| CVE-2025-3775 | MEDIUM | 6.5 | 2025-04-25 | The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +20 Modules – All in One Solution (formerly WooLentor) plugin for WordPress is vulnerable to Server-Side Request For… |
| CVE-2024-12023 | MEDIUM | 6.5 | 2025-05-02 | The FULL – Cliente plugin for WordPress is vulnerable to SQL Injection via the 'formId' parameter in all versions 3.1.5 to 3.1.25 due to insufficient escaping on the user supplied… |
| CVE-2025-9451 | MEDIUM | 6.5 | 2025-09-11 | The Smartcat Translator for WPML plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter in all versions up to, and including, 3.1.72 due to ins… |
| CVE-2025-12483 | MEDIUM | 6.5 | 2025-12-02 | The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to SQL Injection via the 'query' parameter in all versions up to, and including, 3.11.12… |
| CVE-2026-1000 | MEDIUM | 6.5 | 2026-01-16 | The MailerLite - WooCommerce integration plugin for WordPress is vulnerable to unauthorized data modification and deletion in all versions up to, and including, 3.1.3. This is due… |
| CVE-2026-1235 | MEDIUM | 6.5 | 2026-02-11 | The WP eCommerce WordPress plugin through 3.15.1 unserializes user input via ajax actions, which could allow unauthenticated users to perform PHP Object Injection when a suitable … |
| CVE-2026-3138 | MEDIUM | 6.5 | 2026-03-24 | The Product Filter for WooCommerce by WBW plugin for WordPress is vulnerable to unauthorized data loss due to a missing capability check in all versions up to, and including, 3.1.… |
| CVE-2026-1307 | MEDIUM | 6.5 | 2026-03-28 | The Ninja Forms - The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.14.1 vi… |
| CVE-2026-4782 | MEDIUM | 6.5 | 2026-05-13 | The Avada Builder plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 3.15.2 via the 'fusion_get_svg_from_file' function with the 'cust… |
| CVE-2026-4683 | MEDIUM | 6.5 | 2026-05-15 | The Smartcat Translator for WPML plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'routeData' REST endpoint in all … |
| CVE-2015-2791 | MEDIUM | 6.4 | 2015-03-30 | The "menu sync" function in the WPML plugin before 3.1.9 for WordPress allows remote attackers to delete arbitrary posts, pages, and menus via a crafted request to sitepress-multi… |
| CVE-2023-4890 | MEDIUM | 6.4 | 2023-09-12 | The JQuery Accordion Menu Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'dcwp-jquery-accordion' shortcode in versions up to, and including, 3.1.2 du… |
| CVE-2023-4716 | MEDIUM | 6.4 | 2023-09-22 | The Media Library Assistant plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'mla_gallery' shortcode in versions up to, and including, 3.10 due to insuffi… |
| CVE-2023-5109 | MEDIUM | 6.4 | 2023-10-20 | The WP Mailto Links – Protect Email Addresses plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'wpml_mailto' shortcode in versions up to, and including, 3.1.3… |
| CVE-2023-5615 | MEDIUM | 6.4 | 2023-10-20 | The Skype Legacy Buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'skype-status' shortcode in all versions up to, and including, 3.1 due … |
| CVE-2023-5432 | MEDIUM | 6.4 | 2023-12-19 | The Jquery news ticker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'jquery-news-ticker' shortcode in versions up to, and including, 3.1 due to insufficie… |
| CVE-2023-6884 | MEDIUM | 6.4 | 2024-02-05 | This plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode in all versions up to, and including, 3.1 due to insufficient input sanitization … |
| CVE-2024-0438 | MEDIUM | 6.4 | 2024-02-29 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the wrapper link parameter in the Age Gate in all versions up to, and includin… |
| CVE-2024-0506 | MEDIUM | 6.4 | 2024-02-29 | The Elementor Website Builder – More than Just a Page Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the $instance[alt] parameter in the get_imag… |
| CVE-2024-0838 | MEDIUM | 6.4 | 2024-02-29 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the side image URL parameter in the Age Gate in all versions up to, and includ… |
| CVE-2024-1366 | MEDIUM | 6.4 | 2024-03-07 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘archive_title_tag’ attribute of the Archive Title widget in all versions … |
| CVE-2024-1377 | MEDIUM | 6.4 | 2024-03-07 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘author_meta_tag’ attribute of the Author Meta widget in all versions up t… |
| CVE-2024-1506 | MEDIUM | 6.4 | 2024-03-07 | The Prime Slider – Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title_tags' attribute of the Fiestar widget in all versions up t… |
| CVE-2024-1507 | MEDIUM | 6.4 | 2024-03-13 | The Prime Slider – Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title_tags' attribute of the Rubix widget in all versions up to,… |
| CVE-2024-1508 | MEDIUM | 6.4 | 2024-03-13 | The Prime Slider – Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'settings['title_tags']' attribute of the Mercury widget in all v… |
| CVE-2024-2500 | MEDIUM | 6.4 | 2024-03-22 | The ColorMag theme for WordPress is vulnerable to Stored Cross-Site Scripting via a user's Display Name in all versions up to, and including, 3.1.6 due to insufficient input sanit… |
| CVE-2024-1049 | MEDIUM | 6.4 | 2024-03-23 | The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Icon Widget's in all versions up to, and including,… |
| CVE-2024-2475 | MEDIUM | 6.4 | 2024-03-29 | The Media Library Assistant plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all versions up to, and including, 3.13 due to insuffi… |
| CVE-2024-2842 | MEDIUM | 6.4 | 2024-03-29 | The Easy Appointments plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ea_full_calendar' shortcode in all versions up to, and including, 3.11.18… |
| CVE-2024-1946 | MEDIUM | 6.4 | 2024-04-02 | The Genesis Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the block content in all versions up to, and including, 3.1.2 due to insufficient input sa… |
| CVE-2024-2830 | MEDIUM | 6.4 | 2024-04-04 | The WordPress Tag and Category Manager – AI Autotagger plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'st_tag_cloud' shortcode in all versions … |
| CVE-2024-1498 | MEDIUM | 6.4 | 2024-04-09 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Photo Stack Widget in all versions up to, and including, 3.10.3 d… |
| CVE-2024-2039 | MEDIUM | 6.4 | 2024-04-09 | The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post(v2) block title tag in all versions up to, and includi… |
| CVE-2024-2787 | MEDIUM | 6.4 | 2024-04-09 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Page Title HTML Tag in all versions up to, and including, 3.10.4 due to in… |
| CVE-2024-2788 | MEDIUM | 6.4 | 2024-04-09 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Title HTML Tag in all versions up to, and including, 3.10.4 due to in… |
| CVE-2024-2789 | MEDIUM | 6.4 | 2024-04-09 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Calendy widget in all versions up to, and including, 3.10.4 due t… |
| CVE-2024-2871 | MEDIUM | 6.4 | 2024-04-09 | The Media Library Assistant plugin for WordPress is vulnerable to SQL Injection via the plugin's shortcode(s) in all versions up to, and including, 3.13 due to insufficient escapi… |
| CVE-2024-1041 | MEDIUM | 6.4 | 2024-04-10 | The WP Radio – Worldwide Online Radio Stations Directory for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's settings in all versions … |
| CVE-2024-1042 | MEDIUM | 6.4 | 2024-04-10 | The WP Radio – Worldwide Online Radio Stations Directory for WordPress plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on… |
| CVE-2024-3890 | MEDIUM | 6.4 | 2024-04-26 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Calendly widget in all versions up to, and including, 3.10.5 due to insuff… |
| CVE-2024-3280 | MEDIUM | 6.4 | 2024-05-02 | The Follow Us Badges plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpsite_follow_us_badges shortcode in all versions up to, and including, 3.1… |
| CVE-2024-3650 | MEDIUM | 6.4 | 2024-05-02 | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Accordion widget in all versions 3.0.7 through 3.1.2 due to insuff… |
| CVE-2024-3670 | MEDIUM | 6.4 | 2024-05-02 | The Leaflet Maps Marker (Google Maps, OpenStreetMap, Bing Maps) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'mapsmarker' shortcode in all ve… |
| CVE-2024-3724 | MEDIUM | 6.4 | 2024-05-02 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Stack Group, Photo Stack, & Horizontal Timeline widgets in … |
| CVE-2024-3891 | MEDIUM | 6.4 | 2024-05-02 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via HTML tags in widgets in all versions up to, and including, 3.10.5 due to insuf… |
| CVE-2024-4339 | MEDIUM | 6.4 | 2024-05-14 | The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the General w… |
| CVE-2024-4636 | MEDIUM | 6.4 | 2024-05-15 | The Image Optimization by Optimole – Lazy Load, CDN, Convert WebP & AVIF plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘allow_meme_types’ function in v… |
| CVE-2024-4478 | MEDIUM | 6.4 | 2024-05-16 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Image Stack Group widget in all versions up to, and including, 3.10.7 due … |
| CVE-2024-4391 | MEDIUM | 6.4 | 2024-05-16 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Event Calendar widget in all versions up to, and including, 3.10.… |
| CVE-2024-4789 | MEDIUM | 6.4 | 2024-05-17 | Cost Calculator Builder Pro plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to 3.1.72, via the send_demo_webhook() function. This makes it pos… |
| CVE-2024-4865 | MEDIUM | 6.4 | 2024-05-18 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘_id’ parameter in all versions up to, and including, 3.10.8 due to insuff… |
| CVE-2024-3714 | MEDIUM | 6.4 | 2024-05-18 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'give_form' shortcode when used with a leg… |
| CVE-2024-5088 | MEDIUM | 6.4 | 2024-05-18 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘_id’ parameter in all versions up to, and including, 3.10.8 due to insuff… |
| CVE-2024-3201 | MEDIUM | 6.4 | 2024-05-23 | The WP DSGVO Tools (GDPR) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'pp_link' shortcode in all versions up to, and including, 3.1.32 due t… |
| CVE-2024-3997 | MEDIUM | 6.4 | 2024-05-23 | The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's … |
| CVE-2024-5041 | MEDIUM | 6.4 | 2024-05-31 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ha-ia-content-button’ parameter in all versions up to, and including, 3.1… |
| CVE-2024-5347 | MEDIUM | 6.4 | 2024-05-31 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'arrow' attribute within the plugin's Post Navigation widget in all versio… |
| CVE-2024-2933 | MEDIUM | 6.4 | 2024-06-01 | The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Social Profiles widget in all versions up to, and including,… |
| CVE-2024-5640 | MEDIUM | 6.4 | 2024-06-07 | The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ attr… |
| CVE-2024-4615 | MEDIUM | 6.4 | 2024-06-13 | The Elespare – Blog, Magazine and Newspaper Addons for Elementor with Templates, Widgets, Kits, and Header/Footer Builder. One Click Import: No Coding Required! plugin for WordPre… |
| CVE-2024-5156 | MEDIUM | 6.4 | 2024-06-20 | The Flatsome theme for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 3.18.7 due to insufficient input … |
| CVE-2024-5346 | MEDIUM | 6.4 | 2024-06-22 | The Flatsome theme for WordPress is vulnerable to Stored Cross-Site Scripting via the UX Countdown, Video Button, UX Video, UX Slider, UX Sidebar, and UX Payment Icons shortcodes … |
| CVE-2024-6296 | MEDIUM | 6.4 | 2024-06-28 | The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘data-caption’ parameter in all versions up to, and includi… |
| CVE-2024-5662 | MEDIUM | 6.4 | 2024-06-28 | The Ultimate Post Kit Addons For Elementor – (Post Grid, Post Carousel, Post Slider, Category List, Post Tabs, Timeline, Post Ticker, Tag Cloud) plugin for WordPress is vulnerable… |
| CVE-2024-5790 | MEDIUM | 6.4 | 2024-06-29 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘url’ attribute within the plugin's Gradient Heading widget in all version… |
| CVE-2024-3513 | MEDIUM | 6.4 | 2024-07-02 | The Ultimate Blocks – WordPress Blocks Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the title tag (postTitleTag) parameter in all versions up to, a… |
| CVE-2024-4268 | MEDIUM | 6.4 | 2024-07-02 | The Ultimate Blocks – WordPress Blocks Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's blocks in all versions up to, and including, 3.1.9… |
| CVE-2024-3563 | MEDIUM | 6.4 | 2024-07-09 | The Genesis Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Sharing block in all versions up to, and including, 3.1.3 due to insufficient… |
| CVE-2024-2691 | MEDIUM | 6.4 | 2024-07-16 | The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'events' sh… |
| CVE-2024-5251 | MEDIUM | 6.4 | 2024-07-17 | The Ultimate Addons for WPBakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ultimate_pricing shortcode in all versions up to, and includin… |
| CVE-2024-5252 | MEDIUM | 6.4 | 2024-07-17 | The Ultimate Addons for WPBakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ultimate_info_table shortcode in all versions up to, and includ… |
| CVE-2024-5253 | MEDIUM | 6.4 | 2024-07-17 | The Ultimate Addons for WPBakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ult_team shortcode in all versions up to, and including, 3.19.2… |
| CVE-2024-5254 | MEDIUM | 6.4 | 2024-07-17 | The Ultimate Addons for WPBakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ultimate_info_banner shortcode in all versions up to, and inclu… |
| CVE-2024-5255 | MEDIUM | 6.4 | 2024-07-17 | The Ultimate Addons for WPBakery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ultimate_dual_color shortcode in all versions up to, and includ… |
| CVE-2024-6627 | MEDIUM | 6.4 | 2024-07-27 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's PDF View widget in all versions up to, and including, 3.11.2 due … |
| CVE-2024-5628 | MEDIUM | 6.4 | 2024-09-13 | The Avada | Website Builder For WordPress & eCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's fusion_button shortcode in all versions up… |
| CVE-2024-8442 | MEDIUM | 6.4 | 2024-11-07 | The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Ecommerce Slider) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's … |
| CVE-2024-10538 | MEDIUM | 6.4 | 2024-11-12 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the before_label parameter in the Image Comparison widget in all versions up t… |
| CVE-2024-11826 | MEDIUM | 6.4 | 2025-01-07 | The Quill Forms | The Best Typeform Alternative | Create Conversational Multi Step Form, Survey, Quiz, Cost Estimation or Donation Form on WordPress plugin for WordPress is vulner… |
| CVE-2024-12852 | MEDIUM | 6.4 | 2025-01-08 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ha_cmc_text' parameter of the Happy Mouse Cursor in all versions up to, a… |
| CVE-2024-12117 | MEDIUM | 6.4 | 2025-01-22 | The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' parameter of the Button block in all versions up to… |
| CVE-2024-12477 | MEDIUM | 6.4 | 2025-01-22 | The Avada Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all versions up to, and including, 3.11.11 due to insufficient i… |
| CVE-2024-12043 | MEDIUM | 6.4 | 2025-01-23 | The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Post Slider and Ecommerce Slider) plugin for WordPress is vulnerable to Stored Cross-Site Scripting v… |
| CVE-2024-10552 | MEDIUM | 6.4 | 2025-01-25 | The Flexmls® IDX Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘api_key’ and 'api_secret' parameters in all versions up to, and including, 3.14.… |
| CVE-2024-12816 | MEDIUM | 6.4 | 2025-01-25 | The NOTICE BOARD BY TOWKIR plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'notice-board' shortcode in all versions up to, and including, 3.1 du… |
| CVE-2025-1065 | MEDIUM | 6.4 | 2025-02-19 | The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Import Data From File feature in all ver… |
| CVE-2024-13679 | MEDIUM | 6.4 | 2025-02-19 | The Widget BUY.BOX plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'buybox-widget' shortcode in all versions up to, and including, 3.1.5 due to … |
| CVE-2024-12452 | MEDIUM | 6.4 | 2025-02-21 | The Ziggeo plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ziggeo_event' shortcode in all versions up to, and including, 3.1 due to insufficien… |
| CVE-2024-12820 | MEDIUM | 6.4 | 2025-02-28 | The MK Google Directions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'MKGD' shortcode in all versions up to, and including, 3.1 due to insuf… |
| CVE-2024-11731 | MEDIUM | 6.4 | 2025-03-05 | The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ms_slider shortcode in all versions up to, and inclu… |
| CVE-2024-13757 | MEDIUM | 6.4 | 2025-03-05 | The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ms_layer shortcode in all versions up to, and includ… |
| CVE-2025-0863 | MEDIUM | 6.4 | 2025-03-07 | The Flexmls® IDX Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'idx_frame' shortcode in all versions up to, and including, 3.14.27 due … |
| CVE-2025-1527 | MEDIUM | 6.4 | 2025-03-12 | The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +20 Modules – All in One Solution (formerly WooLentor) plugin for WordPress is vulnerable to a Stored DOM-Based Cros… |
| CVE-2025-1665 | MEDIUM | 6.4 | 2025-04-01 | The Avada (Fusion) Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several of the plugin's shortcodes in all versions up to, and including, 3.11.14 d… |
| CVE-2025-2314 | MEDIUM | 6.4 | 2025-04-16 | The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's s… |
| CVE-2025-4171 | MEDIUM | 6.4 | 2025-05-07 | The WZ Followed Posts – Display what visitors are reading plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wfp' shortcode in all versions up to,… |
| CVE-2025-5096 | MEDIUM | 6.4 | 2025-05-23 | The TablePress plugin for WordPress is vulnerable to DOM-Based Stored Cross-Site Scripting via the 'data-caption', 'data-s-content-padding', 'data-s-title', and 'data-footer' data… |
| CVE-2025-4671 | MEDIUM | 6.4 | 2025-06-03 | The Profile Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's user_meta and compare shortcodes in all versions up to, and including, 3.13.… |
| CVE-2025-1777 | MEDIUM | 6.4 | 2025-06-06 | The BM Content Builder plugin for WordPress is vulnerable to unauthorized modification of data to a missing capability check on the 'ux_cb_page_options_save' function in all versi… |
| CVE-2025-5291 | MEDIUM | 6.4 | 2025-06-17 | The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's masterslider_pb and ms_slide shortcodes in all versi… |
| CVE-2025-5398 | MEDIUM | 6.4 | 2025-06-27 | The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the use of a templating engine in all versions… |
| CVE-2025-2540 | MEDIUM | 6.4 | 2025-07-03 | Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled prettyPhoto library (version 3.1.6) in various versions due to insufficient i… |
| CVE-2025-2537 | MEDIUM | 6.4 | 2025-07-03 | Multiple plugins for WordPress are vulnerable to Stored Cross-Site Scripting via the plugin's bundled ThickBox JavaScript library (version 3.1) in various versions due to insuffic… |
| CVE-2025-6747 | MEDIUM | 6.4 | 2025-07-16 | The Avada (Fusion) Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'fusion_map' shortcode in all versions up to, and including, 3.12.1 d… |
| CVE-2025-5767 | MEDIUM | 6.4 | 2025-07-18 | The Crowdfunding for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘width’ parameter in all versions up to, and including, 3.1.14 due to in… |
| CVE-2025-8216 | MEDIUM | 6.4 | 2025-07-29 | The Sky Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Multiple widgets in all versions up to, and including, 3.1.4 due to insufficient… |
| CVE-2025-7727 | MEDIUM | 6.4 | 2025-08-06 | The Gutenverse plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Animated Text and Fun Fact blocks in all versions up to, and including, 3.1.0 due… |
| CVE-2025-8867 | MEDIUM | 6.4 | 2025-08-15 | The Graphina - Elementor Charts and Graphs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple chart widget parameters in version 3.1.3 and below. This … |
| CVE-2025-8896 | MEDIUM | 6.4 | 2025-08-16 | The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'gdpr_comm… |
| CVE-2025-8316 | MEDIUM | 6.4 | 2025-09-11 | The Certifica WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘evento’ parameter in all versions up to, and including, 3.1 due to insufficient input s… |
| CVE-2025-10168 | MEDIUM | 6.4 | 2025-09-30 | The Any News Ticker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'any-ticker' shortcode in all versions up to, and including, 3.1.1 due to in… |
| CVE-2025-11820 | MEDIUM | 6.4 | 2025-11-05 | The Graphina – Elementor Charts and Graphs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple chart widgets in all versions up to, and including, 3.1.8… |
| CVE-2025-12878 | MEDIUM | 6.4 | 2025-11-19 | The FunnelKit – Funnel Builder for WooCommerce Checkout plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `wfop_phone` shortcode in all versions up to, and… |
| CVE-2025-13054 | MEDIUM | 6.4 | 2025-11-19 | The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's w… |
| CVE-2025-13401 | MEDIUM | 6.4 | 2025-12-03 | The Autoptimize plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the LCP Image to preload metabox in all versions up to, and including, 3.1.13 due to insuffic… |
| CVE-2025-13730 | MEDIUM | 6.4 | 2025-12-18 | The OpenID Connect Generic Client plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'openid_connect_generic_auth_url' shortcode in all versions up… |
| CVE-2026-0914 | MEDIUM | 6.4 | 2026-01-23 | The WP DSGVO Tools (GDPR) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'lw_content_block' shortcode in all versions up to, and including, 3.1… |
| CVE-2026-1922 | MEDIUM | 6.4 | 2026-02-10 | The The Events Calendar Shortcode & Block plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's `ecs-list-events` shortcode `message` attribute in all… |
| CVE-2026-1910 | MEDIUM | 6.4 | 2026-02-14 | The UpMenu – Online ordering for restaurants plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'lang' attribute of the 'upmenu-menu' shortcode in all versi… |
| CVE-2026-0549 | MEDIUM | 6.4 | 2026-02-19 | The Groups plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'groups_group_info' shortcode in all versions up to, and including, 3.10.0 due to ins… |
| CVE-2026-2352 | MEDIUM | 6.4 | 2026-03-21 | The Autoptimize plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ao_post_preload' meta value in all versions up to, and including, 3.1.14. This is due to… |
| CVE-2026-2430 | MEDIUM | 6.4 | 2026-03-21 | The Autoptimize plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the lazy-loading image processing in all versions up to, and including, 3.1.14. This is due t… |
| CVE-2026-4389 | MEDIUM | 6.4 | 2026-03-26 | The DSGVO snippet for Leaflet Map and its Extensions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `leafext-cookie-time` and `leafext-delete-cookie` sh… |
| CVE-2026-4801 | MEDIUM | 6.4 | 2026-04-18 | The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via external iCal feed data in all versions up to, and including, 3.… |
| CVE-2026-4085 | MEDIUM | 6.4 | 2026-04-22 | The Easy Social Photos Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'wrapper_class' shortcode attribute of the 'my-instagram-feed' shortcode i… |
| CVE-2026-6916 | MEDIUM | 6.4 | 2026-05-02 | The Jeg Kit for Elementor – Powerful Addons for Elementor, Widgets & Templates for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'sg_content_… |
| CVE-2026-1543 | MEDIUM | 6.4 | 2026-05-21 | The Avada (Fusion) Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple shortcodes in all versions up to, and including, 3.15.2 due to insufficie… |
| CVE-2026-9281 | MEDIUM | 6.4 | 2026-06-06 | The Master Addons For Elementor – Widgets, Extensions, Theme Builder, Popup Builder & Template Kits plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'jtlma_cu… |
| CVE-2024-7888 | MEDIUM | 6.3 | 2024-09-13 | The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several function… |
| CVE-2025-5692 | MEDIUM | 6.3 | 2025-07-02 | The Lead Form Data Collection to CRM plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on several functions in the ~/includes/LB_admin_aj… |
| CVE-2025-10567 | MEDIUM | 6.3 | 2025-11-05 | The FunnelKit WordPress plugin before 3.12.0.1 does not sanitize user input before echoing it back in some of its checkout-related AJAX actions, allowing attackers to conduct ref… |
| CVE-2019-13414 | MEDIUM | 6.1 | 2019-07-08 | The Rencontre plugin before 3.1.3 for WordPress allows XSS via inc/rencontre_widget.php. |
| CVE-2016-10878 | MEDIUM | 6.1 | 2019-08-12 | The wp-google-map-plugin plugin before 3.1.2 for WordPress has XSS. |
| CVE-2015-9317 | MEDIUM | 6.1 | 2019-08-20 | The awesome-support plugin before 3.1.7 for WordPress has XSS via custom information messages. |
| CVE-2015-9357 | MEDIUM | 6.1 | 2019-08-28 | The akismet plugin before 3.1.5 for WordPress has XSS. |
| CVE-2019-15713 | MEDIUM | 6.1 | 2019-08-28 | The my-calendar plugin before 3.1.10 for WordPress has XSS. |
| CVE-2015-9386 | MEDIUM | 6.1 | 2019-09-20 | The mtouch-quiz plugin before 3.1.3 for WordPress has XSS via the quiz parameter during a Quiz Manage operation. |
| CVE-2014-4559 | MEDIUM | 6.1 | 2019-12-27 | Multiple cross-site scripting (XSS) vulnerabilities in test-plugin.php in the Swipe Checkout for WP e-Commerce plugin 3.1.0 and earlier for WordPress allow remote attackers to inj… |
| CVE-2019-20173 | MEDIUM | 6.1 | 2020-02-05 | The Auth0 wp-auth0 plugin 3.11.x before 3.11.3 for WordPress allows XSS via a wle parameter associated with wp-login.php. |
| CVE-2020-11727 | MEDIUM | 6.1 | 2020-05-06 | A cross-site scripting (XSS) vulnerability in the AlgolPlus Advanced Order Export For WooCommerce plugin 3.1.3 for WordPress allows remote attackers to inject arbitrary web script… |
| CVE-2021-24169 | MEDIUM | 6.1 | 2021-04-05 | This Advanced Order Export For WooCommerce WordPress plugin before 3.1.8 helps you to easily export WooCommerce order data. The tab parameter in the Admin Panel is vulnerable to r… |
| CVE-2021-24293 | MEDIUM | 6.1 | 2021-05-05 | In the eCommerce module of the NextGEN Gallery Pro WordPress plugin before 3.1.11, there is an action to call get_cart_items via photocrati_ajax , after that the settings[shipping… |
| CVE-2021-24387 | MEDIUM | 6.1 | 2021-07-06 | The WP Pro Real Estate 7 WordPress theme before 3.1.1 did not properly sanitise the ct_community parameter in its search listing page before outputting it back in it, leading to a… |
| CVE-2021-24522 | MEDIUM | 6.1 | 2021-08-09 | The User Registration, User Profile, Login & Membership – ProfilePress (Formerly WP User Avatar) WordPress plugin before 3.1.11's widget for tabbed login/register was not properly… |
| CVE-2021-38322 | MEDIUM | 6.1 | 2021-09-09 | The Twitter Friends Widget WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the pmc_TF_user and pmc_TF_password parameter found in the ~/twitter-friends-widget… |
| CVE-2021-24935 | MEDIUM | 6.1 | 2021-12-06 | The WP Google Fonts WordPress plugin before 3.1.5 does not escape the googlefont_ajax_name and googlefont_ajax_family parameter of the googlefont_action AJAx action (available to … |
| CVE-2021-24923 | MEDIUM | 6.1 | 2022-01-24 | The Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue WordPress plugin before 3.1.25 does not escape the sib-statistics-date parameter before outputting it back … |
| CVE-2021-24874 | MEDIUM | 6.1 | 2022-02-14 | The Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue WordPress plugin before 3.1.31 does not escape the lang and pid parameter before outputting them back in at… |
| CVE-2022-1474 | MEDIUM | 6.1 | 2022-07-11 | The WP Event Manager WordPress plugin before 3.1.28 does not sanitise and escape its search before outputting it back in an attribute on the event dashboard, leading to a Reflecte… |
| CVE-2022-2173 | MEDIUM | 6.1 | 2022-07-17 | The Advanced Database Cleaner WordPress plugin before 3.1.1 does not escape numerous generated URLs before outputting them back in href attributes of admin dashboard pages, leadin… |
| CVE-2023-2407 | MEDIUM | 6.1 | 2023-06-03 | The Event Registration Calendar By vcita plugin, versions up to and including 3.10.0, and Online Payments – Get Paid with PayPal, Square & Stripe plugin, for WordPress are vulnera… |
| CVE-2023-2472 | MEDIUM | 6.1 | 2023-06-05 | The Newsletter, SMTP, Email marketing and Subscribe forms by Sendinblue WordPress plugin before 3.1.61 does not sanitise and escape a parameter before outputting it back in the ad… |
| CVE-2023-2362 | MEDIUM | 6.1 | 2023-06-12 | The Float menu WordPress plugin before 5.0.2, Bubble Menu WordPress plugin before 3.0.4, Button Generator WordPress plugin before 2.3.5, Calculator Builder WordPress plugin before… |
| CVE-2023-2398 | MEDIUM | 6.1 | 2023-06-12 | The Icegram Engage WordPress plugin before 3.1.12 does not escape a parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting which could be… |
| CVE-2023-2803 | MEDIUM | 6.1 | 2023-08-14 | The Ultimate Addons for Contact Form 7 WordPress plugin before 3.1.29 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-… |
| CVE-2023-2813 | MEDIUM | 6.1 | 2023-09-04 | All of the above Aapna WordPress theme through 1.3, Anand WordPress theme through 1.2, Anfaust WordPress theme through 1.1, Arendelle WordPress theme before 1.1.13, Atlast Busines… |
| CVE-2023-4148 | MEDIUM | 6.1 | 2023-09-25 | The Ditty WordPress plugin before 3.1.25 does not sanitise and escape some parameters and generated URLs before outputting them back in attributes, leading to Reflected Cross-Site… |
| CVE-2024-0976 | MEDIUM | 6.1 | 2024-03-13 | The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the plugin parameter … |
| CVE-2022-45847 | MEDIUM | 6.1 | 2024-03-27 | Cross-Site Request Forgery (CSRF) vulnerability in WPAssist.Me WordPress Countdown Widget allows Cross-Site Scripting (XSS).This issue affects WordPress Countdown Widget: from n/a… |
| CVE-2024-3519 | MEDIUM | 6.1 | 2024-05-22 | The Media Library Assistant plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the lang parameter in all versions up to, and including, 3.15 due to insuffici… |
| CVE-2024-5544 | MEDIUM | 6.1 | 2024-07-02 | The Media Library Assistant plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the order parameter in all versions up to, and including, 3.17 due to insuffic… |
| CVE-2024-6715 | MEDIUM | 6.1 | 2024-08-23 | The Ditty WordPress plugin before 3.1.46 re-introduced a previously fixed security issue (https://wpscan.com/vulnerability/80a9eb3a-2cb1-4844-9004-ba2554b2d46c/) in v3.1.39 |
| CVE-2024-9211 | MEDIUM | 6.1 | 2024-10-11 | The FULL – Cliente plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg & remove_query_arg without appropriate escaping on the URL … |
| CVE-2024-9616 | MEDIUM | 6.1 | 2024-10-11 | The BlockMeister – Block Pattern Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the U… |
| CVE-2024-8719 | MEDIUM | 6.1 | 2024-10-17 | The Flexmls® IDX Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via several parameters like 'MaxBeds' and 'MinBeds' in all versions up to, and includi… |
| CVE-2024-10682 | MEDIUM | 6.1 | 2024-11-21 | The Announcement & Notification Banner – Bulletin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg and remove_query_arg without… |
| CVE-2024-8735 | MEDIUM | 6.1 | 2024-11-22 | The MailMunch – Grow your Email List plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL i… |
| CVE-2024-10519 | MEDIUM | 6.1 | 2024-11-23 | The Wishlist for WooCommerce: Multi Wishlists Per Customer PRO plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'wtab' parameter in versions 3.0.8 to 3… |
| CVE-2024-10832 | MEDIUM | 6.1 | 2024-12-04 | The Posti Shipping plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the account_number and secret_key parameters in all versions up to, and including, 3.10… |
| CVE-2024-12128 | MEDIUM | 6.1 | 2024-12-07 | The Simple Ecommerce Shopping Cart Plugin- Sell products through Paypal plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘monthly_sales_current_year’ p… |
| CVE-2024-12302 | MEDIUM | 6.1 | 2025-01-06 | The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its Campaign settings, which could allow authors and above to perform Stored Cross-Site Scr… |
| CVE-2024-12738 | MEDIUM | 6.1 | 2025-01-07 | The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several user m… |
| CVE-2024-12339 | MEDIUM | 6.1 | 2025-02-19 | The Digihood HTML Sitemap plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘channel' parameter in all versions up to, and including, 3.1.1 due to insuf… |
| CVE-2024-13774 | MEDIUM | 6.1 | 2025-03-08 | The Wishlist for WooCommerce: Multi Wishlists Per Customer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.7. This is du… |
| CVE-2025-1773 | MEDIUM | 6.1 | 2025-03-15 | The Traveler theme for WordPress is vulnerable to Reflected Cross-Site Scripting via multiple parameters in all versions up to, and including, 3.1.8 due to insufficient input sani… |
| CVE-2025-3421 | MEDIUM | 6.1 | 2025-04-11 | The Everest Forms – Contact Form, Quiz, Survey, Newsletter & Payment Form Builder for WordPress plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'form_… |
| CVE-2025-2203 | MEDIUM | 6.1 | 2025-05-15 | The FunnelKit WordPress plugin before 3.10.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL injection attacks |
| CVE-2025-12834 | MEDIUM | 6.1 | 2025-12-12 | The Accept Stripe Payments Using Contact Form 7 plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'failure_message' parameter in versions up to, and inc… |
| CVE-2024-3964 | MEDIUM | 5.9 | 2024-07-13 | The Product Enquiry for WooCommerce WordPress plugin before 3.1.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perfor… |
| CVE-2011-3127 | MEDIUM | 5.8 | 2011-08-10 | WordPress 3.1 before 3.1.3 and 3.2 before Beta 2 does not prevent rendering for (1) admin or (2) login pages inside a frame in a third-party HTML document, which makes it easier f… |
| CVE-2024-4787 | MEDIUM | 5.8 | 2024-06-19 | The Cost Calculator Builder PRO for WordPress is vulnerable to arbitrary email sending vulnerability in versions up to, and including, 3.1.75. This is due to insufficient limitati… |
| CVE-2025-10406 | MEDIUM | 5.5 | 2025-10-15 | The BlindMatrix e-Commerce WordPress plugin before 3.1 does not validate some shortcode attributes before using them to generate paths passed to include function/s, allowing any a… |
| CVE-2025-14767 | MEDIUM | 5.5 | 2026-05-13 | The WPC Badge Management for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'text' attribute of the `wpcbm_best_seller` shortcode in all ver… |
| CVE-2019-15836 | MEDIUM | 5.4 | 2019-08-30 | The wp-ultimate-recipe plugin before 3.12.7 for WordPress has stored XSS. |
| CVE-2015-9389 | MEDIUM | 5.4 | 2019-09-20 | The mtouch-quiz plugin before 3.1.3 for WordPress has XSS via a quiz name. |
| CVE-2016-11012 | MEDIUM | 5.4 | 2019-09-20 | The sola-support-tickets plugin before 3.13 for WordPress has incorrect access control for /wp-admin with resultant XSS. |
| CVE-2020-7108 | MEDIUM | 5.4 | 2020-01-16 | The LearnDash LMS plugin before 3.1.2 for WordPress allows XSS via the ld-profile search field. |
| CVE-2021-24201 | MEDIUM | 5.4 | 2021-04-05 | In the Elementor Website Builder WordPress plugin before 3.1.4, the column element (includes/elements/column.php) accepts an ‘html_tag’ parameter. Although the element control lis… |
| CVE-2021-24202 | MEDIUM | 5.4 | 2021-04-05 | In the Elementor Website Builder WordPress plugin before 3.1.4, the heading widget (includes/widgets/heading.php) accepts a ‘header_size’ parameter. Although the element control l… |
| CVE-2021-24203 | MEDIUM | 5.4 | 2021-04-05 | In the Elementor Website Builder WordPress plugin before 3.1.4, the divider widget (includes/widgets/divider.php) accepts an ‘html_tag’ parameter. Although the element control lis… |
| CVE-2021-24204 | MEDIUM | 5.4 | 2021-04-05 | In the Elementor Website Builder WordPress plugin before 3.1.4, the accordion widget (includes/widgets/accordion.php) accepts a ‘title_html_tag’ parameter. Although the element co… |
| CVE-2021-24205 | MEDIUM | 5.4 | 2021-04-05 | In the Elementor Website Builder WordPress plugin before 3.1.4, the icon box widget (includes/widgets/icon-box.php) accepts a ‘title_size’ parameter. Although the element control … |
| CVE-2021-24206 | MEDIUM | 5.4 | 2021-04-05 | In the Elementor Website Builder WordPress plugin before 3.1.4, the image box widget (includes/widgets/image-box.php) accepts a ‘title_size’ parameter. Although the element contro… |
| CVE-2021-24302 | MEDIUM | 5.4 | 2021-05-24 | The Hana Flv Player WordPress plugin through 3.1.3 is vulnerable to an Authenticated Stored Cross-Site Scripting (XSS) vulnerability within the 'Default Skin' field. |
| CVE-2021-24971 | MEDIUM | 5.4 | 2022-02-28 | The WP Responsive Menu WordPress plugin before 3.1.7.1 does not have capability and CSRF checks in the wpr_live_update AJAX action, as well as do not sanitise and escape some of t… |
| CVE-2022-0398 | MEDIUM | 5.4 | 2022-04-25 | The ThirstyAffiliates Affiliate Link Manager WordPress plugin before 3.10.5 does not have authorisation and CSRF checks when creating affiliate links, which could allow any authen… |
| CVE-2022-29412 | MEDIUM | 5.4 | 2022-04-28 | Multiple Cross-Site Request Forgery (CSRF) vulnerabilities in Hermit 音乐播放器 plugin <= 3.1.6 on WordPress allow attackers to delete cache, delete a source, create source. |
| CVE-2022-36355 | MEDIUM | 5.4 | 2022-09-01 | Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in PluginlySpeaking Easy Org Chart plugin <= 3.1 at WordPress. |
| CVE-2022-4480 | MEDIUM | 5.4 | 2023-01-16 | The Click to Chat WordPress plugin before 3.18.1 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users wit… |
| CVE-2022-4668 | MEDIUM | 5.4 | 2023-01-23 | The Easy Appointments WordPress plugin before 3.11.2 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users… |
| CVE-2022-4677 | MEDIUM | 5.4 | 2023-02-06 | The Leaflet Maps Marker WordPress plugin before 3.12.7 does not validate and escape one of its shortcode attributes, which could allow users with a role as low as contributor to p… |
| CVE-2023-0380 | MEDIUM | 5.4 | 2023-02-21 | The Easy Digital Downloads WordPress plugin before 3.1.0.5 does not validate and escape some of its block options before outputting them back in a page/post where the block is emb… |
| CVE-2023-0078 | MEDIUM | 5.4 | 2023-03-06 | The Resume Builder WordPress plugin through 3.1.1 does not sanitize and escape some parameters related to Resume, which could allow users with a role as low as subscriber to perfo… |
| CVE-2023-2899 | MEDIUM | 5.4 | 2023-06-19 | The Google Map Shortcode WordPress plugin through 3.1.2 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow us… |
| CVE-2022-4782 | MEDIUM | 5.4 | 2023-08-16 | The ClickFunnels WordPress plugin through 3.1.1 does not validate and escape one of its shortcode attributes, which could allow users with a role as low as contributor to perform … |
| CVE-2023-4799 | MEDIUM | 5.4 | 2023-11-20 | The Magic Embeds WordPress plugin before 3.1.2 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embe… |
| CVE-2024-1775 | MEDIUM | 5.4 | 2024-03-02 | The Nextend Social Login and Register plugin for WordPress is vulnerable to a self-based Reflected Cross-Site Scripting via the ‘error_description’ parameter in all versions up to… |
| CVE-2024-2252 | MEDIUM | 5.4 | 2024-03-13 | The Droit Elementor Addons – Widgets, Blocks, Templates Library For Elementor Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's widgets in… |
| CVE-2024-2369 | MEDIUM | 5.4 | 2024-04-02 | The Page Builder Gutenberg Blocks WordPress plugin before 3.1.7 does not validate and escape some of its block options before outputting them back in a page/post where the block i… |
| CVE-2024-2786 | MEDIUM | 5.4 | 2024-04-09 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several widgets in all versions up to, and including, 3.10.4 due to insufficie… |
| CVE-2024-1730 | MEDIUM | 5.4 | 2024-04-20 | The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Media Slider, Drag Drop Slider, Video Slider, Product Slider, Ecommerce Slider) plugin for WordPress … |
| CVE-2024-3241 | MEDIUM | 5.4 | 2024-05-14 | The Ultimate Blocks WordPress plugin before 3.1.7 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, whic… |
| CVE-2024-3939 | MEDIUM | 5.4 | 2024-05-27 | The Ditty WordPress plugin before 3.1.36 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scri… |
| CVE-2024-4655 | MEDIUM | 5.4 | 2024-07-11 | The Ultimate Blocks WordPress plugin before 3.1.9 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, whic… |
| CVE-2024-5977 | MEDIUM | 5.4 | 2024-07-19 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 3.13.0 via the '… |
| CVE-2024-6710 | MEDIUM | 5.4 | 2024-08-05 | The Ditty WordPress plugin before 3.1.45 does not sanitise and escape some parameters, which could allow users with a role as low as Contributor to perform Cross-Site Scripting a… |
| CVE-2024-5941 | MEDIUM | 5.4 | 2024-08-20 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to unauthorized access and deletion of data due to a missing capability check on the 'hand… |
| CVE-2024-8092 | MEDIUM | 5.4 | 2024-09-17 | The Accordion Image Menu WordPress plugin through 3.1.3 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to ma… |
| CVE-2024-12253 | MEDIUM | 5.4 | 2024-12-07 | The Simple Ecommerce Shopping Cart Plugin- Sell products through Paypal plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'save_se… |
| CVE-2024-13834 | MEDIUM | 5.4 | 2025-02-15 | The Responsive Plus – Starter Templates, Advanced Features and Customizer Settings for Responsive Theme plugin for WordPress is vulnerable to Server-Side Request Forgery in all ve… |
| CVE-2025-3422 | MEDIUM | 5.4 | 2025-04-11 | The The Everest Forms – Contact Form, Quiz, Survey, Newsletter & Payment Form Builder for WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution in all vers… |
| CVE-2025-62048 | MEDIUM | 5.4 | 2025-10-22 | Missing Authorization vulnerability in WPMU DEV - Your All-in-One WordPress Platform SmartCrawl smartcrawl-seo.This issue affects SmartCrawl: from n/a through <= 3.14.3. |
| CVE-2026-32412 | MEDIUM | 5.4 | 2026-03-13 | Server-Side Request Forgery (SSRF) vulnerability in Gift Up! Gift Up Gift Cards for WordPress and WooCommerce gift-up allows Server Side Request Forgery.This issue affects Gift Up… |
| CVE-2026-4124 | MEDIUM | 5.4 | 2026-04-09 | The Ziggeo plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 3.1.1. The wp_ajax_ziggeo_ajax handler only verifies a nonce (check_a… |
| CVE-2026-1509 | MEDIUM | 5.4 | 2026-04-15 | The Avada (Fusion) Builder plugin for WordPress is vulnerable to Arbitrary WordPress Action Execution in all versions up to, and including, 3.15.1. This is due to the plugin's `ou… |
| CVE-2022-50970 | MEDIUM | 5.4 | 2026-05-10 | WordPress Plugin AAWP 3.16 contains a reflected cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by manipulating the tab paramete… |
| CVE-2026-5191 | MEDIUM | 5.4 | 2026-06-02 | The Tiled Gallery Carousel Without JetPack plugin for WordPress is vulnerable to stored cross-site scripting via the 'data-image-title' parameter in all versions up to, and includ… |
| CVE-2018-8719 | MEDIUM | 5.3 | 2018-04-04 | An issue was discovered in the WP Security Audit Log plugin 3.1.1 for WordPress. Access to wp-content/uploads/wp-security-audit-log/* files is not restricted. For example, these f… |
| CVE-2022-4057 | MEDIUM | 5.3 | 2023-01-02 | The Autoptimize WordPress plugin before 3.1.0 uses an easily guessable path to store plugin's exported settings and logs. |
| CVE-2023-28421 | MEDIUM | 5.3 | 2023-12-21 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Winwar Media WordPress Email Marketing Plugin – WP Email Capture.This issue affects WordPress Email Mar… |
| CVE-2024-1516 | MEDIUM | 5.3 | 2024-02-28 | The WP eCommerce plugin for WordPress is vulnerable to unauthorized arbitrary post creation due to a missing capability check on the check_for_saas_push() function in all versions… |
| CVE-2024-3235 | MEDIUM | 5.3 | 2024-04-10 | The Essential Grid Gallery WordPress Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.1.1 via the on_front_ajax_… |
| CVE-2024-1688 | MEDIUM | 5.3 | 2024-05-02 | The Woo Total Sales plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the get_orders_archive() function in all versions up to,… |
| CVE-2024-3287 | MEDIUM | 5.3 | 2024-05-02 | The SmartCrawl WordPress SEO checker, SEO analyzer, SEO optimizer plugin for WordPress is vulnerable to unauthorized ld+json description injection due to a missing capability chec… |
| CVE-2024-6556 | MEDIUM | 5.3 | 2024-07-10 | The SmartCrawl WordPress SEO checker, SEO analyzer, SEO optimizer plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.10.8. This is … |
| CVE-2024-6571 | MEDIUM | 5.3 | 2024-07-24 | The Optimize Images ALT Text (alt tag) & names for SEO using AI plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.1.1. This is due… |
| CVE-2024-5939 | MEDIUM | 5.3 | 2024-08-20 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'setup_wizard' fun… |
| CVE-2024-6568 | MEDIUM | 5.3 | 2024-08-21 | The Flamix: Bitrix24 and Contact Form 7 integrations plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.1.0. This is due the plugin… |
| CVE-2024-7390 | MEDIUM | 5.3 | 2024-08-21 | The WP Testimonial Widget plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the fnSaveTestimonailOrder function in all v… |
| CVE-2024-6551 | MEDIUM | 5.3 | 2024-08-29 | The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 3.15.1. This is due to the p… |
| CVE-2024-8760 | MEDIUM | 5.3 | 2024-10-12 | The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to CSS Injection in all versions up to, and including, 3.13.6. This makes it possible for unauthen… |
| CVE-2024-12159 | MEDIUM | 5.3 | 2025-01-07 | The Optimize Your Campaigns – Google Shopping – Google Ads – Google Adwords plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 3.1 du… |
| CVE-2025-12681 | MEDIUM | 5.3 | 2025-11-13 | The Comment Edit Core – Simple Comment Editing plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.1.0 via the 'ajax_get_c… |
| CVE-2025-13620 | MEDIUM | 5.3 | 2025-12-05 | The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to missing authorization in versions up to, and including, 3.1.3. This is due to the REST routes… |
| CVE-2025-14072 | MEDIUM | 5.3 | 2026-01-02 | The Ninja Forms WordPress plugin before 3.13.3 allows unauthenticated attackers to generate valid access tokens via the REST API which can then be used to read form submissions. |
| CVE-2025-14460 | MEDIUM | 5.3 | 2026-01-07 | The Piraeus Bank WooCommerce Payment Gateway plugin for WordPress is vulnerable to unauthorized order status modification in all versions up to, and including, 3.1.4. This is due … |
| CVE-2026-3335 | MEDIUM | 5.3 | 2026-03-21 | The Canto plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 3.1.1 via the `/wp-content/plugins/canto/includes/lib/copy-media.php` f… |
| CVE-2011-3126 | MEDIUM | 5.0 | 2011-08-10 | WordPress 3.1 before 3.1.3 and 3.2 before Beta 2 allows remote attackers to determine usernames of non-authors via canonical redirects. |
| CVE-2011-3128 | MEDIUM | 5.0 | 2011-08-10 | WordPress 3.1 before 3.1.3 and 3.2 before Beta 2 treats unattached attachments as published, which might allow remote attackers to obtain sensitive data via vectors related to wp-… |
| CVE-2012-0896 | MEDIUM | 5.0 | 2012-01-20 | Absolute path traversal vulnerability in download.php in the Count Per Day module before 3.1.1 for WordPress allows remote attackers to read arbitrary files via the f parameter. |
| CVE-2011-4957 | MEDIUM | 5.0 | 2012-06-27 | The make_clickable function in wp-includes/formatting.php in WordPress before 3.1.1 does not properly check URLs before passing them to the PCRE library, which allows remote attac… |
| CVE-2014-8604 | MEDIUM | 5.0 | 2015-06-10 | The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! returns the MySQL password in cleartext to a text box in the configuration panel, which allows remote attackers to obt… |
| CVE-2014-8605 | MEDIUM | 5.0 | 2015-06-10 | The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! stores database backup files with predictable names under the web root with insufficient access control, which allows … |
| CVE-2024-6631 | MEDIUM | 5.0 | 2024-08-24 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on several AJAX actions in all v… |
| CVE-2024-13844 | MEDIUM | 4.9 | 2025-03-08 | The Post SMTP plugin for WordPress is vulnerable to generic SQL Injection via the ‘columns’ parameter in all versions up to, and including, 3.1.2 due to insufficient escaping on t… |
| CVE-2025-5103 | MEDIUM | 4.9 | 2025-06-03 | The Ultimate Gift Cards for WooCommerce plugin for WordPress is vulnerable to boolean-based SQL Injection via the 'default_price' and 'product_id' parameters in all versions up to… |
| CVE-2025-9947 | MEDIUM | 4.9 | 2025-10-11 | The Custom 404 Pro plugin for WordPress is vulnerable to time-based SQL Injection via the ‘path’ parameter in all versions up to, and including, 3.12.0 due to insufficient escapin… |
| CVE-2025-10187 | MEDIUM | 4.9 | 2025-10-18 | The GSpeech TTS – WordPress Text To Speech Plugin plugin for WordPress is vulnerable to SQL Injection via the 'field' parameter in all versions up to, and including, 3.17.13 due t… |
| CVE-2025-13972 | MEDIUM | 4.9 | 2025-12-12 | The WatchTowerHQ plugin for WordPress is vulnerable to arbitrary file read via the 'wht_download_big_object_origin' parameter in all versions up to, and including, 3.16.0. This is… |
| CVE-2025-14477 | MEDIUM | 4.9 | 2025-12-13 | The 404 Solution plugin for WordPress is vulnerable to SQL Injection in all versions up to, and including, 3.1.0 due to insufficient escaping on the user supplied parameter and la… |
| CVE-2026-4853 | MEDIUM | 4.9 | 2026-04-17 | The JetBackup – Backup, Restore & Migrate plugin for WordPress is vulnerable to Path Traversal leading to Arbitrary Directory Deletion in versions up to and including 3.1.19.8. Th… |
| CVE-2021-24450 | MEDIUM | 4.8 | 2021-08-02 | The User Registration, User Profiles, Login & Membership – ProfilePress (Formerly WP User Avatar) WordPress plugin before 3.1.8 did not sanitise or escape some of its settings bef… |
| CVE-2021-24810 | MEDIUM | 4.8 | 2022-03-07 | The WP Event Manager WordPress plugin before 3.1.23 does not escape some of its Field Editor settings when outputting them, allowing high privilege users to perform Cross-Site Scr… |
| CVE-2022-0684 | MEDIUM | 4.8 | 2022-03-14 | The WP Home Page Menu WordPress plugin before 3.1 does not sanitise and escape its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks ev… |
| CVE-2021-36866 | MEDIUM | 4.8 | 2022-06-02 | Authenticated (author or higher role) Stored Cross-Site Scripting (XSS) vulnerability in Fatcat Apps Easy Pricing Tables plugin <= 3.1.2 at WordPress. |
| CVE-2022-1990 | MEDIUM | 4.8 | 2022-06-27 | The Nested Pages WordPress plugin before 3.1.21 does not escape and sanitize the some of its settings, which could allow high privilege users to perform Stored Cross-Site Scriptin… |
| CVE-2022-2410 | MEDIUM | 4.8 | 2022-08-08 | The mTouch Quiz WordPress plugin through 3.1.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site… |
| CVE-2022-2425 | MEDIUM | 4.8 | 2022-08-08 | The WP DS Blog Map WordPress plugin through 3.1.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-S… |
| CVE-2022-2635 | MEDIUM | 4.8 | 2022-09-16 | The Autoptimize WordPress plugin before 3.1.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site … |
| CVE-2022-3811 | MEDIUM | 4.8 | 2023-01-23 | The EU Cookie Law for GDPR/CCPA WordPress plugin through 3.1.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform S… |
| CVE-2023-2113 | MEDIUM | 4.8 | 2023-05-30 | The Autoptimize WordPress plugin before 3.1.7 does not sanitise and escape the settings imported from a previous export, allowing high privileged users (such as an administrator) … |
| CVE-2023-3245 | MEDIUM | 4.8 | 2023-07-17 | The Floating Chat Widget WordPress plugin before 3.1.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cr… |
| CVE-2023-2802 | MEDIUM | 4.8 | 2023-08-14 | The Ultimate Addons for Contact Form 7 WordPress plugin before 3.1.29 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to pe… |
| CVE-2023-4060 | MEDIUM | 4.8 | 2023-09-11 | The WP Adminify WordPress plugin before 3.1.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site … |
| CVE-2023-6626 | MEDIUM | 4.8 | 2024-01-22 | The Product Enquiry for WooCommerce WordPress plugin before 3.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform … |
| CVE-2023-6165 | MEDIUM | 4.8 | 2024-01-29 | The Restrict Usernames Emails Characters WordPress plugin before 3.1.4 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to p… |
| CVE-2024-3261 | MEDIUM | 4.8 | 2024-04-24 | The Strong Testimonials WordPress plugin before 3.1.12 does not validate and escape some of its Testimonial fields before outputting them back in a page/post, which could allow us… |
| CVE-2024-7132 | MEDIUM | 4.8 | 2024-08-29 | The Page Builder Gutenberg Blocks WordPress plugin before 3.1.13 does not escape the content of post embed via one of its block, which could allow users with the capability to pu… |
| CVE-2024-9600 | MEDIUM | 4.8 | 2024-11-21 | The Ditty WordPress plugin before 3.1.47 does not sanitise and escape some of its settings, which could allow high privilege users such as author to perform Stored Cross-Site Scr… |
| CVE-2024-11921 | MEDIUM | 4.8 | 2024-12-27 | The GiveWP WordPress plugin before 3.19.0 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could … |
| CVE-2024-13357 | MEDIUM | 4.8 | 2025-05-15 | The Ditty WordPress plugin before 3.1.52 does not sanitise and escape some of its settings, which could allow high privilege users such as author to perform Stored Cross-Site Scr… |
| CVE-2024-13482 | MEDIUM | 4.8 | 2025-05-15 | The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-… |
| CVE-2024-13486 | MEDIUM | 4.8 | 2025-05-15 | The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-… |
| CVE-2024-6708 | MEDIUM | 4.8 | 2025-05-15 | The User Profile Builder WordPress plugin before 3.12.2 does not sanitise and escape some parameters before outputting its content on the admin area, which allows Admin+ users to… |
| CVE-2025-2524 | MEDIUM | 4.8 | 2025-05-19 | The Ninja Forms WordPress plugin before 3.10.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Sit… |
| CVE-2025-2560 | MEDIUM | 4.8 | 2025-05-19 | The Ninja Forms WordPress plugin before 3.10.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Sit… |
| CVE-2025-2561 | MEDIUM | 4.8 | 2025-05-19 | The Ninja Forms WordPress plugin before 3.10.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Sit… |
| CVE-2021-38343 | MEDIUM | 4.7 | 2021-08-30 | The Nested Pages WordPress plugin <= 3.1.15 was vulnerable to an Open Redirect via the `page` POST parameter in the `npBulkActions`, `npBulkEdit`, `npListingSort`, and `npCategory… |
| CVE-2022-29413 | MEDIUM | 4.7 | 2022-04-28 | Cross-Site Request Forgery (CSRF) leading to Stored Cross-Site Scripting (XSS) in Mufeng's Hermit 音乐播放器 plugin <= 3.1.6 on WordPress via &title parameter. |
| CVE-2024-1720 | MEDIUM | 4.7 | 2024-03-07 | The User Registration – Custom Registration Form, Login Form, and User Profile WordPress Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Display … |
| CVE-2024-5575 | MEDIUM | 4.7 | 2024-07-13 | The Ditty WordPress plugin before 3.1.43 does not sanitise and escape some of its blocks' settings, which could allow high privilege users such as authors to perform Cross-Site S… |
| CVE-2024-8120 | MEDIUM | 4.7 | 2024-08-24 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.14. This is due to missing or i… |
| CVE-2025-6247 | MEDIUM | 4.7 | 2025-08-26 | The WordPress Automatic Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.118.0. This is due to missing or incorrect … |
| CVE-2023-4423 | MEDIUM | 4.4 | 2023-09-27 | The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in versio… |
| CVE-2024-0688 | MEDIUM | 4.4 | 2024-01-25 | The "WebSub (FKA. PubSubHubbub)" plugin for WordPress is vulnerable to Stored Cross-Site Scripting via plugin settings in all versions up to, and including, 3.1.4 due to insuffici… |
| CVE-2025-2799 | MEDIUM | 4.4 | 2025-07-16 | The WP Event Manager – Events Calendar, Registrations, Sell Tickets with WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘tag-name’ parameter… |
| CVE-2025-6626 | MEDIUM | 4.4 | 2025-08-02 | The ShortPixel Adaptive Images – WebP, AVIF, CDN, Image Optimization plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the API URL Setting in all versions up t… |
| CVE-2025-12393 | MEDIUM | 4.4 | 2025-11-04 | The Free Quotation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via admin settings in all versions up to, and including, 3.1.6 due to insufficient input sanit… |
| CVE-2007-5161 | MEDIUM | 4.3 | 2007-10-01 | Cross-zone scripting vulnerability in the internal browser in i-Systems Feedreader 3.10 allows remote attackers to inject arbitrary web script or HTML via an item in a feed, as de… |
| CVE-2010-4875 | MEDIUM | 4.3 | 2011-10-07 | Cross-site scripting (XSS) vulnerability in vodpod-video-gallery/vodpod_gallery_thumbs.php in the Vodpod Video Gallery Plugin 3.1.5 for WordPress allows remote attackers to inject… |
| CVE-2012-0895 | MEDIUM | 4.3 | 2012-01-20 | Cross-site scripting (XSS) vulnerability in map/map.php in the Count Per Day module before 3.1.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via t… |
| CVE-2011-4956 | MEDIUM | 4.3 | 2012-06-27 | Cross-site scripting (XSS) vulnerability in WordPress before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
| CVE-2011-5257 | MEDIUM | 4.3 | 2013-02-12 | Multiple cross-site scripting (XSS) vulnerabilities in the Classipress theme before 3.1.5 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) t… |
| CVE-2013-1636 | MEDIUM | 4.3 | 2014-03-12 | Cross-site scripting (XSS) vulnerability in open-flash-chart.swf in Open Flash Chart (aka Open-Flash Chart), as used in the Pretty Link Lite plugin before 1.6.3 for WordPress, JNe… |
| CVE-2014-4513 | MEDIUM | 4.3 | 2014-07-01 | Multiple cross-site scripting (XSS) vulnerabilities in server/offline.php in the ActiveHelper LiveHelp Live Chat plugin 3.1.0 and earlier for WordPress allow remote attackers to i… |
| CVE-2014-4557 | MEDIUM | 4.3 | 2014-07-02 | Cross-site scripting (XSS) vulnerability in test-plugin.php in the Swipe Checkout for Jigoshop (swipe-hq-checkout-for-jigoshop) plugin 3.1.0 and earlier for WordPress allows remot… |
| CVE-2015-2315 | MEDIUM | 4.3 | 2015-03-17 | Cross-site scripting (XSS) vulnerability in the WPML plugin before 3.1.9 for WordPress allows remote attackers to inject arbitrary web script or HTML via the target parameter in a… |
| CVE-2015-5485 | MEDIUM | 4.3 | 2015-08-18 | Cross-site scripting (XSS) vulnerability in the Event Import page (import-eventbrite-events.php) in the Modern Tribe Eventbrite Tickets plugin before 3.10.2 for WordPress allows r… |
| CVE-2022-0634 | MEDIUM | 4.3 | 2022-04-25 | The ThirstyAffiliates WordPress plugin before 3.10.5 lacks authorization checks in the ta_insert_external_image action, allowing a low-privilege user (with a role as low as Subscr… |
| CVE-2022-4385 | MEDIUM | 4.3 | 2023-02-21 | The Intuitive Custom Post Order WordPress plugin before 3.1.4 does not check for authorization in the update-menu-order ajax action, allowing any logged in user (with roles as low… |
| CVE-2022-4386 | MEDIUM | 4.3 | 2023-02-21 | The Intuitive Custom Post Order WordPress plugin before 3.1.4 lacks CSRF protection in its update-menu-order ajax action, allowing an attacker to trick any user to change the menu… |
| CVE-2022-4931 | MEDIUM | 4.3 | 2023-03-07 | The BackupWordPress plugin for WordPress is vulnerable to information disclosure in versions up to, and including 3.12. This is due to missing authorization on the heartbeat_recei… |
| CVE-2021-4385 | MEDIUM | 4.3 | 2023-07-01 | The WP Private Content Plus plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.1. This is due to missing or incorrect nonce valid… |
| CVE-2020-36751 | MEDIUM | 4.3 | 2023-10-20 | The Coupon Creator plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.1. This is due to missing or incorrect nonce validation on … |
| CVE-2023-52119 | MEDIUM | 4.3 | 2024-01-05 | Cross-Site Request Forgery (CSRF) vulnerability in Icegram Icegram Engage – WordPress Lead Generation, Popup Builder, CTA, Optins and Email List Building.This issue affects Icegra… |
| CVE-2023-6504 | MEDIUM | 4.3 | 2024-01-11 | The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to unauthorized access of data due to a missing c… |
| CVE-2023-6625 | MEDIUM | 4.3 | 2024-01-22 | The Product Enquiry for WooCommerce WordPress plugin before 3.1 does not have a CSRF check in place when deleting inquiries, which could allow attackers to make a logged in admin … |
| CVE-2024-0983 | MEDIUM | 4.3 | 2024-02-29 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the enableOptimization functi… |
| CVE-2024-0984 | MEDIUM | 4.3 | 2024-02-29 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the disableOptimization funct… |
| CVE-2024-1089 | MEDIUM | 4.3 | 2024-02-29 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the optimizeAllOn function in… |
| CVE-2024-1090 | MEDIUM | 4.3 | 2024-02-29 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the stopOptimizeAll function … |
| CVE-2024-1091 | MEDIUM | 4.3 | 2024-02-29 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the reinitialize function in … |
| CVE-2024-1334 | MEDIUM | 4.3 | 2024-02-29 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.13. This is due to missing or i… |
| CVE-2024-1335 | MEDIUM | 4.3 | 2024-02-29 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.13. This is due to missing or i… |
| CVE-2024-1336 | MEDIUM | 4.3 | 2024-02-29 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.13. This is due to missing or i… |
| CVE-2024-1338 | MEDIUM | 4.3 | 2024-02-29 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.13. This is due to missing or i… |
| CVE-2024-1339 | MEDIUM | 4.3 | 2024-02-29 | The ImageRecycle pdf & image compression plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.13. This is due to missing or i… |
| CVE-2024-2844 | MEDIUM | 4.3 | 2024-03-29 | The Easy Appointments plugin for WordPress is vulnerable to unauthorized modification of data due to insufficient user validation on the ajax_cancel_appointment() function in all … |
| CVE-2024-1387 | MEDIUM | 4.3 | 2024-04-09 | The Happy Addons for Elementor plugin for WordPress is vulnerable to unauthorized access of data due to insufficient authorization on the duplicate_thing() function in all version… |
| CVE-2023-6491 | MEDIUM | 4.3 | 2024-06-07 | The Strong Testimonials plugin for WordPress is vulnerable to unauthorized modification of data due to an improper capability check on the wpmtst_save_view_sticky function in all … |
| CVE-2024-8801 | MEDIUM | 4.3 | 2024-09-25 | The Happy Addons for Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.12.2 via the Content Switcher widget. T… |
| CVE-2024-8477 | MEDIUM | 4.3 | 2024-10-10 | The Newsletter, SMTP, Email marketing and Subscribe forms by Brevo (formely Sendinblue) plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and… |
| CVE-2024-10667 | MEDIUM | 4.3 | 2024-11-09 | The Content Slider Block plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 3.1.5 via the [csb] shortcode due to insufficient restric… |
| CVE-2024-12335 | MEDIUM | 4.3 | 2024-12-25 | The Avada (Fusion) Builder plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 3.11.12 via the handle_clone_post() function and the 'f… |
| CVE-2025-1506 | MEDIUM | 4.3 | 2025-02-28 | The Wp Social Login and Register Social Counter plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.0. This is due to missin… |
| CVE-2025-1778 | MEDIUM | 4.3 | 2025-06-06 | The Art Theme for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'arttheme_theme_option_restore' AJAX function in all versions up to, and … |
| CVE-2025-10498 | MEDIUM | 4.3 | 2025-09-27 | The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.12.0. This is d… |
| CVE-2025-10499 | MEDIUM | 4.3 | 2025-09-27 | The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.12.0. This … |
| CVE-2025-11163 | MEDIUM | 4.3 | 2025-09-30 | The SmartCrawl SEO checker, analyzer & optimizer plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the update_submodule(… |
| CVE-2025-10303 | MEDIUM | 4.3 | 2025-10-15 | The Library Management System plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the owt7_library_management_ajax_handler… |
| CVE-2025-11497 | MEDIUM | 4.3 | 2025-10-25 | The Advanced Database Cleaner plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.6. This is due to missing or incorrect non… |
| CVE-2025-12173 | MEDIUM | 4.3 | 2025-11-18 | The WP Admin Microblog plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.1. This is due to missing or incorrect nonce vali… |
| CVE-2025-12751 | MEDIUM | 4.3 | 2025-11-19 | The WSChat – WordPress Live Chat plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'reset_settings' AJAX endpoint in… |
| CVE-2025-12971 | MEDIUM | 4.3 | 2025-11-27 | The Folders – Unlimited Folders to Organize Media Library Folder, Pages, Posts, File Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a misco… |
| CVE-2025-13737 | MEDIUM | 4.3 | 2025-11-28 | The Nextend Social Login and Register plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.21. This is due to missing or inco… |
| CVE-2025-14162 | MEDIUM | 4.3 | 2025-12-12 | The BMLT WordPress Plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.11.4. This is due to missing nonce validation on the 'B… |
| CVE-2025-12640 | MEDIUM | 4.3 | 2026-01-08 | The Folders – Unlimited Folders to Organize Media Library Folder, Pages, Posts, File Manager plugin for WordPress is vulnerable to Unauthorized Arbitrary Media Replacement in all … |
| CVE-2026-0554 | MEDIUM | 4.3 | 2026-01-20 | The NotificationX plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'regenerate' and 'reset' REST API endpoints in a… |
| CVE-2025-15524 | MEDIUM | 4.3 | 2026-02-11 | The Gallery by FooGallery plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the ajax_get_gallery_info() function in all versio… |
| CVE-2026-1128 | MEDIUM | 4.3 | 2026-03-06 | The WP eCommerce WordPress plugin through 3.15.1 does not have CSRF check in place when deleting coupons, which could allow attackers to make a logged in admin remove them via a C… |
| CVE-2026-3139 | MEDIUM | 4.3 | 2026-03-31 | The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions u… |
| CVE-2026-1541 | MEDIUM | 4.3 | 2026-04-15 | The Avada (Fusion) Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.15.1. This is due to the plugin's `fusion_g… |
| CVE-2026-6441 | MEDIUM | 4.3 | 2026-04-17 | The Canto plugin for WordPress is vulnerable to Missing Authorization in versions up to and including 3.1.1. This is due to the absence of any capability check or nonce verificati… |
| CVE-2026-4118 | MEDIUM | 4.3 | 2026-04-22 | The Call To Action Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.1.3. This is due to missing nonce validation in … |
| CVE-2026-4140 | MEDIUM | 4.3 | 2026-04-22 | The Ni WooCommerce Order Export plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to and including 3.1.6. This is due to missing nonce validation… |
| CVE-2026-8689 | MEDIUM | 4.3 | 2026-05-28 | The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 3.11.14. This is due to a… |
| CVE-2025-22288 | MEDIUM | 4.1 | 2025-11-06 | Path Traversal: '.../...//' vulnerability in WPMU DEV - Your All-in-One WordPress Platform Smush Image Compression and Optimization wp-smushit allows Path Traversal.This issue aff… |
| CVE-2014-8606 | MEDIUM | 4.0 | 2015-06-10 | Directory traversal vulnerability in the XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! allows remote administrators to read arbitrary files via a .. (dot dot) in the fi… |
| CVE-2024-2972 | LOW | 3.8 | 2024-04-24 | The Floating Chat Widget: Contact Chat Icons, WhatsApp, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button WordPress plugin before 3.1.9 does not sanitise and escape … |
| CVE-2024-9654 | LOW | 3.7 | 2024-12-17 | The Easy Digital Downloads plugin for WordPress is vulnerable to Improper Authorization in versions 3.1 through 3.3.4. This is due to a lack of sufficient validation checks within… |
| CVE-2015-4337 | LOW | 3.5 | 2015-06-17 | Cross-site scripting (XSS) vulnerability in the XCloner plugin 3.1.2 for WordPress allows remote authenticated users to inject arbitrary web script or HTML via the excl_manual par… |
| CVE-2022-4905 | LOW | 3.5 | 2023-02-13 | A vulnerability was found in UDX Stateless Media Plugin 3.1.1 on WordPress. It has been declared as problematic. This vulnerability affects the function setup_wizard_interface of … |
| CVE-2024-12173 | LOW | 3.5 | 2025-02-19 | The Master Slider WordPress plugin before 3.10.5 does not sanitise and escape some of its settings, which could allow high privilege users such as Editor and above to perform Sto… |
| CVE-2025-9543 | LOW | 3.5 | 2026-01-05 | The FlexTable WordPress plugin before 3.19.2 does not sanitise and escape the imported links from Google Sheet cells, which could allow high privilege users such as admin to perf… |
| CVE-2024-3034 | LOW | 2.7 | 2024-04-27 | The BackUpWordPress plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.13 via the hmbkp_directory_browse parameter. This makes it po… |
| CVE-2014-8607 | LOW | 2.1 | 2015-06-10 | The XCloner plugin 3.1.1 for WordPress and 3.5.1 for Joomla! provides the MySQL username and password on the command line, which allows local users to obtain sensitive information… |
Plain English · Fix recommendations · Instant PDF & HTML download
Scan your site in 30 seconds. Used by 500+ web agencies.
WordPress 3.1 is dangerously outdated and puts your website at extreme risk of compromise. With 538 known vulnerabilities—including 49 critical flaws affecting SQL injection, file uploads, and remote code execution—staying on this version is not a matter of if your site will be hacked, but when. The upgrade process is straightforward and essential for protecting your business, your customers, and your reputation.
Don't wait for a security breach to force you into action. Use SiteRecipe.com's vulnerability scanner to continuously monitor your WordPress installation for security issues, outdated plugins, and configuration weaknesses. Our comprehensive security audits identify vulnerabilities before attackers do, and our expert guidance ensures your WordPress site stays secure, fast, and compliant. Visit SiteRecipe.com today to run a free security scan and take control of your website's protection.
Web agencies use SiteRecipe to produce branded PDF security reports in 30 seconds.