| CVE-2025-23582 | WordPress Bulk Categories Assign plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability | Haider Ali | Bulk Categories Assign | High | 7.1 | 2025-02-03 14:22:43 | Deep Dive |
| CVE-2024-12708 | Bulk Me Now <= 2.0 - Stored XSS via Shortcode | Unknown | Bulk Me Now! | 高危 | - | 2025-01-30 06:00:11 | Deep Dive |
| CVE-2024-12709 | Bulk Me Now <= 2.0 - Message Deletion via CSRF | Unknown | Bulk Me Now! | 中危 | - | 2025-01-30 06:00:11 | Deep Dive |
| CVE-2024-12638 | Bulk Me Now <= 2.0 - Reflected XSS | Unknown | Bulk Me Now! | 高危 | - | 2025-01-30 06:00:10 | Deep Dive |
| CVE-2025-22587 | WordPress SEO Bulk Editor plugin <= 1.1.0 - Cross Site Scripting (XSS) vulnerability | Atanas Krachev | SEO Bulk Editor | Medium | 6.5 | 2025-01-15 15:23:38 | Deep Dive |
| CVE-2025-22352 | WordPress ELEX WooCommerce Advanced Bulk Edit Products, Prices & Attributes Plugin <= 1.4.9 - SQL Injection vulnerability | ELEXtensions | ELEX WooCommerce Advanced Bulk Edit Products, Prices & Attributes | High | 7.6 | 2025-01-07 10:48:39 | Deep Dive |
| CVE-2024-11434 | WP – Bulk SMS – by SMS.to <= 1.0.12 - Reflected Cross-Site Scripting | intergotelecom | WP – Bulk SMS – by SMS.to | Medium | 6.1 | 2025-01-07 04:21:56 | Deep Dive |
| CVE-2024-54236 | WordPress Ni WooCommerce Bulk Product Editor plugin <= 1.4.5 - Reflected Cross Site Scripting (XSS) vulnerability | Anzar Ahmed | Ni WooCommerce Bulk Product Editor | High | 7.1 | 2024-12-13 14:24:30 | Deep Dive |
| CVE-2023-41688 | WordPress Bulk NoIndex & NoFollow Toolkit plugin <= 1.5 - Broken Access Control vulnerability | madfishdigital | Bulk NoIndex & NoFollow Toolkit | Medium | 5.4 | 2024-12-13 14:24:14 | Deep Dive |
| CVE-2024-12160 | Seraphinite Bulk Discounts for WooCommerce <= 2.4.6 - Reflected Cross-Site Scripting | seraphinitesoft | Seraphinite Bulk Discounts for WooCommerce | Medium | 6.1 | 2024-12-12 08:22:35 | Deep Dive |
| CVE-2023-49754 | WordPress Bulk Edit Post Titles plugin <= 5.0.0 - Broken Access Control vulnerability | Yogesh Pawar | Bulk Edit Post Titles | 中危 | - | 2024-12-09 11:30:16 | Deep Dive |
| CVE-2024-52384 | WordPress Sage AI: Chatbots, OpenAI GPT-4 Bulk Articles, Dalle-3 Image Generation plugin <= 2.4.9 - Arbitrary File Upload vulnerability | wpmonks | Sage AI: Chatbots, OpenAI GPT-4 Bulk Articles, Dalle-3 Image Generation | Critical | 9.9 | 2024-11-14 17:35:26 | Deep Dive |
| CVE-2024-50504 | WordPress Bulk Change Role plugin <= 1.1 - Privilege Escalation vulnerability | webxmedia | Bulk Change Role | High | 8.8 | 2024-10-30 08:10:43 | Deep Dive |
| CVE-2024-9361 | Bulk images optimizer: Resize, optimize, convert to webp, rename ... <= 2.0.1 - Missing Authorization to Authenticated (Subscriber+) Plugin Options Update | giuliopanda | Bulk images optimizer: Resize, optimize, convert to webp, rename … | Medium | 4.3 | 2024-10-18 04:32:55 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2020-36834 | Discount Rules for WooCommerce <= 2.0.2 - Missing Authorization | flycart | Discount Rules for WooCommerce | Medium | 6.3 | 2024-10-16 06:43:27 | Deep Dive |
| CVE-2024-8541 | Discount Rules for WooCommerce – Create Smart WooCommerce Coupons & Discounts, Bulk Discount, BOGO Coupons <= 2.6.5 - Reflected Cross-Site Scripting | flycart | Discount Rules for WooCommerce | Medium | 4.7 | 2024-10-16 02:05:01 | Deep Dive |
| CVE-2024-47352 | WordPress WP Bulk Delete plugin <= 1.3.1 - Cross Site Scripting (XSS) vulnerability | Xylus Themes | WP Bulk Delete | High | 7.1 | 2024-10-06 10:25:50 | Deep Dive |
| CVE-2024-9384 | Quantity Dynamic Pricing & Bulk Discounts for WooCommerce <= 3.8.0 - Reflected Cross-Site Scripting | wpcodefactory | Price by Quantity & Bulk Quantity Discounts for WooCommerce | Medium | 6.1 | 2024-10-04 02:04:57 | Deep Dive |
| CVE-2024-8803 | Bulk NoIndex & NoFollow Toolkit <= 2.15 - Reflected Cross-Site Scripting | madfishdigital | Bulk NoIndex & NoFollow Toolkit | Medium | 6.1 | 2024-09-26 02:03:26 | Deep Dive |