| CVE-2023-25048 | WordPress Fantastic Content Protector Free plugin <= 2.6 - Broken Access Control vulnerability | Fantastic Plugins | Fantastic Content Protector Free | Medium | 5.3 | 2024-12-09 11:31:37 | Deep Dive |
| CVE-2024-10681 | ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup <= 4.0.51 - Authenticated (Subscriber+) Arbitrary Shortcode Execution | reputeinfosystems | ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup | Medium | 6.3 | 2024-12-06 09:23:00 | Deep Dive |
| CVE-2024-11292 | WP Private Content Plus <= 3.6.1 - Unauthenticated Content Restriction Bypass to Sensitive Information Exposure | nimeshrmr | WP Private Content Plus | Medium | 5.3 | 2024-12-06 08:24:51 | Deep Dive |
| CVE-2024-10937 | Related Posts, Inline Related Posts, Contextual Related Posts, Related Content By PickPlugins <= 2.0.58 - Sensitive Information Exposure | pickplugins | Related Posts By PickPlugins | Medium | 5.3 | 2024-12-05 08:23:59 | Deep Dive |
| CVE-2024-53728 | WordPress Protect Your Content plugin <= 1.0.2 - CSRF to Stored Cross Site Scripting (XSS) vulnerability | Oliver Lindner | Protect Your Content | High | 7.1 | 2024-12-02 13:48:40 | Deep Dive |
| CVE-2024-53768 | WordPress Content Audit Exporter plugin <= 1.1 - Sensitive Data Exposure vulnerability | ideinteractive | Content Audit Exporter | Medium | 5.3 | 2024-11-30 21:02:41 | Deep Dive |
| CVE-2024-11083 | ProfilePress <= 4.15.18 - Unauthenticated Content Restriction Bypass to Sensitive Information Exposure | properfraction | Paid Membership Plugin, Ecommerce, User Registration Form, Login Form, User Profile & Restrict Content – ProfilePress | Medium | 5.3 | 2024-11-27 05:31:54 | Deep Dive |
| CVE-2024-10863 | Client-side audit exclusion vulnerability | OpenText | Secure Content Manager | 中危 | - | 2024-11-22 15:36:39 | Deep Dive |
| CVE-2024-11089 | Anonymous Restricted Content <= 1.6.5 - Unauthenticated Content Restriction Bypass to Sensitive Information Exposure | cayenne | Anonymous Restricted Content | Medium | 5.3 | 2024-11-21 13:55:32 | Deep Dive |
| CVE-2024-10528 | Ultimate Member <= 2.8.9 - Missing Authorization to Authenticated (Subscriber+) Arbitrary User Profile Picture Update | ultimatemember | Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin | Medium | 4.3 | 2024-11-21 05:33:49 | Deep Dive |
| CVE-2024-10796 | If-So Dynamic Content Personalization <= 1.9.2.1 - Authenticated (Contributor+) Post Disclosure | ifso | If-So Dynamic Content Personalization | Medium | 4.3 | 2024-11-21 04:24:26 | Deep Dive |
| CVE-2024-11154 | PublishPress Revisions: Duplicate Posts, Submit, Approve and Schedule Content Changes <= 3.5.15 - Missing Authorization to Authenticated (Subscriber+) Sensitive Information Exposure | publishpress | PublishPress Revisions: Duplicate Posts, Submit, Approve and Schedule Content Changes | Medium | 4.3 | 2024-11-20 13:55:14 | Deep Dive |
| CVE-2024-52402 | WordPress Exclusive Content Password Protect plugin <= 1.1.0 - CSRF to Arbitrary File Upload vulnerability | gunghoinc | Exclusive Content Password Protect | Critical | 9.6 | 2024-11-19 16:32:34 | Deep Dive |
| CVE-2024-52383 | WordPress Ai Auto Tool Content Writing Assistant plugin <= 2.1.2 - Broken Access Control vulnerability | aitool | Ai Auto Tool Content Writing Assistant (Gemini Writer, ChatGPT ) All in One | High | 7.5 | 2024-11-14 17:36:44 | Deep Dive |
| CVE-2024-51668 | WordPress MyCurator Content Curation plugin <= 3.78 - Cross Site Scripting (XSS) vulnerability | mtilly | MyCurator Content Curation | Medium | 5.9 | 2024-11-09 13:08:34 | Deep Dive |
| CVE-2024-51696 | WordPress Content Syndication Toolkit Reader plugin <= 1.5 - Reflected Cross Site Scripting (XSS) vulnerability | ben.moody | Content Syndication Toolkit Reader | High | 7.1 | 2024-11-09 12:38:54 | Deep Dive |
| CVE-2024-51717 | WordPress Ajax Content Filter plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability | Perception System System Pvt. Ltd. | Ajax Content Filter | High | 7.1 | 2024-11-09 11:55:56 | Deep Dive |
| CVE-2024-10261 | Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction <= 2.13.0 - Unauthenticated Arbitrary Shortcode Execution | cozmoslabs | Paid Membership Subscriptions – Effortless Memberships, Recurring Payments & Content Restriction | High | 7.3 | 2024-11-09 11:19:46 | Deep Dive |
| CVE-2024-10667 | Content Slider Block – Create fully functional slider with Gutenberg block <= 3.1.5 - Authenticated (Contributor+) Post Disclosure | bplugins | Content Slider Block – Slide Through Text or Media Content | Medium | 4.3 | 2024-11-09 04:32:27 | Deep Dive |
| CVE-2024-10758 | code-projects/anirbandutta9 Content Management System/News-Buzz index.php sql injection | code-projects | Content Management System | High | 7.3 | 2024-11-04 03:31:04 | Deep Dive |