| CVE-2023-4637 | WPvivid <= 0.9.94 - Missing Authorization | wpvividplugins | WPvivid — Backup, Migration & Staging | Medium | 4.3 | 2024-02-05 21:22:00 | Deep Dive |
| CVE-2023-7204 | WP STAGING WordPress Backup Plugin < 3.2.0 - Unauthorized Sensitive Data Exposure | Unknown | WP STAGING WordPress Backup Plugin | 高危 | - | 2024-01-29 14:44:21 | Deep Dive |
| CVE-2024-0697 | Backuply – Backup, Restore, Migrate and Clone <= 1.2.3 - Authenticated (Administrator+) Directory Traversal | softaculous | Backuply – Backup, Restore, Migrate and Clone | Medium | 6.5 | 2024-01-27 04:31:30 | Deep Dive |
| CVE-2023-5504 | BackWPup <= 4.0.1 - Authenticated (Administrator+) Directory Traversal | wp_media | BackWPup – WordPress Backup & Restore Plugin | High | 8.7 | 2024-01-11 08:33:07 | Deep Dive |
| CVE-2023-6266 | Backup Migration <= 1.3.6 - Unauthenticated Arbitrary Backup Download to Sensitive Information Exposure | inisev | BackupBliss – Backup & Migration with Free Cloud Storage | High | 7.5 | 2024-01-11 08:32:28 | Deep Dive |
| CVE-2023-6113 | WP Staging (Free < 3.1.3, Pro < 5.1.3) - Unauthenticated Backup Download | Unknown | WP STAGING WordPress Backup Plugin | 中危 | - | 2024-01-01 14:18:59 | Deep Dive |
| CVE-2023-6271 | Backup Migration Staging < 1.3.6 - Sensitive Data Exposure | Unknown | Backup Migration | 中危 | - | 2024-01-01 14:18:55 | Deep Dive |
| CVE-2023-52185 | WordPress Everest Backup Plugin <= 2.1.9 is vulnerable to Sensitive Data Exposure | Everestthemes | Everest Backup – WordPress Cloud Backup, Migration, Restore & Cloning Plugin | Medium | 5.3 | 2023-12-31 16:50:39 | Deep Dive |
| CVE-2023-7002 | Backup Migration <= 1.3.9 - Authenticated (Admin+) OS Command Injection via url | inisev | BackupBliss – Backup & Migration with Free Cloud Storage | High | 7.2 | 2023-12-23 01:59:51 | Deep Dive |
| CVE-2023-6971 | WordPress plugin Backup Migration 安全漏洞 | migrate | Backup Migration | High | 8.1 | 2023-12-23 01:59:49 | Deep Dive |
| CVE-2023-6972 | Backup Migration <= 1.3.9 - Unauthenticated Path Traversal to Arbitrary File Deletion | inisev | BackupBliss – Backup & Migration with Free Cloud Storage | Critical | 9.8 | 2023-12-23 01:59:47 | Deep Dive |
| CVE-2023-6553 | Backup Migration <= 1.3.7 - Unauthenticated Remote Code Execution | inisev | BackupBliss – Backup & Migration with Free Cloud Storage | Critical | 9.8 | 2023-12-15 10:59:46 | Deep Dive |
| CVE-2023-45050 | WordPress Jetpack Plugin <= 12.8-a.1 is vulnerable to Cross Site Scripting (XSS) | Automattic | Jetpack – WP Security, Backup, Speed, & Growth | Medium | 6.5 | 2023-11-30 12:07:42 | Deep Dive |
| CVE-2023-5738 | WordPress Backup & Migration < 1.4.5 - Subscriber+ Stored XSS | Unknown | WordPress Backup & Migration | 中危 | - | 2023-11-27 16:22:05 | Deep Dive |
| CVE-2023-5737 | WordPress Backup & Migration < 1.4.4 - Subscriber+ Plugin Settings Update | Unknown | WordPress Backup & Migration | 中危 | - | 2023-11-27 16:22:03 | Deep Dive |
| CVE-2023-32583 | WordPress WP All Backup Plugin <= 2.4.3 is vulnerable to Cross Site Request Forgery (CSRF) | Prashant Walke | WP All Backup | Medium | 6.3 | 2023-11-13 01:18:36 | Deep Dive |
| CVE-2023-5982 | UpdraftPlus <= 1.23.10 - Cross-Site Request Forgery to Google Drive Storage Update | davidanderson | UpdraftPlus: WP Backup & Migration Plugin | Medium | 5.4 | 2023-11-07 20:31:57 | Deep Dive |
| CVE-2023-5121 | Migration, Backup, Staging – WPvivid <= 0.9.89 - Authenticated (Administrator+) Stored Cross-Site Scripting | wpvividplugins | WPvivid — Backup, Migration & Staging | Medium | 4.4 | 2023-10-20 07:29:32 | Deep Dive |
| CVE-2023-4274 | WordPress Plugin Migration, Backup, Staging – WPvivid 路径遍历漏洞 | wpvividplugins | Migration, Backup, Staging – WPvivid | High | 8.7 | 2023-10-20 06:35:26 | Deep Dive |
| CVE-2023-5576 | Migration, Backup, Staging – WPvivid <= 0.9.91 - Google Drive Client Secret Exposure | wpvividplugins | WPvivid — Backup, Migration & Staging | High | 8.0 | 2023-10-20 06:35:20 | Deep Dive |