| CVE-2023-4975 | Website Builder by SeedProd <= 6.15.13.1 - Cross-Site Request Forgery to Settings Update | seedprod | Website Builder by SeedProd — Theme Builder, Landing Page Builder, Coming Soon Page, Maintenance Mode | Medium | 4.3 | 2023-10-20 06:35:13 | Deep Dive |
| CVE-2020-36752 | Coming Soon & Maintenance Mode Page <= 1.57 - Cross-Site Request Forgery Bypass | hookandhook | Coming Soon & Maintenance Mode Page & Under Construction | Medium | 4.3 | 2023-07-12 04:38:50 | Deep Dive |
| CVE-2020-36722 | Visual Composer <= 26.0 - Multiple Cross-Site Scripting | visualcomposer | Visual Composer Website Builder | Medium | 5.5 | 2023-06-07 01:51:43 | Deep Dive |
| CVE-2019-25140 | Coming Soon Page & Maintenance Mode <= 1.8.1 - Stored Cross Site Scripting | wpshopmart | Coming Soon Page & Maintenance Mode | High | 7.2 | 2023-06-07 01:51:26 | Deep Dive |
| CVE-2019-25139 | Coming Soon Page & Maintenance Mode <= 1.8.1 - Unauthenticated Settings Reset | wpshopmart | Coming Soon Page & Maintenance Mode | Medium | 6.5 | 2023-06-07 01:51:23 | Deep Dive |
| CVE-2020-36707 | Coming Soon & Maintenance Mode Page <= 1.57 - Cross-Site Request Forgery | hookandhook | Coming Soon & Maintenance Mode Page & Under Construction | High | 8.8 | 2023-06-07 01:51:22 | Deep Dive |
| CVE-2023-23682 | WordPress EZP Maintenance Mode Plugin <= 1.0.1 is vulnerable to Cross Site Scripting (XSS) | Snap Creek Software | EZP Maintenance Mode | Medium | 5.9 | 2023-05-15 12:14:17 | Deep Dive |
| CVE-2022-46854 | WordPress Launchpad – Coming Soon & Maintenance Mode Plugin Plugin <= 1.0.13 is vulnerable to Cross Site Request Forgery (CSRF) | Obox Themes | Launchpad – Coming Soon & Maintenance Mode Plugin | Medium | 5.4 | 2023-03-17 15:24:11 | Deep Dive |
| CVE-2023-0295 | Launchpad – Coming Soon & Maintenance Mode Plugin <= 1.0.13 - Authenticated (Administrator+) Cross-Site Scripting | obox | Launchpad – Coming Soon & Maintenance Mode Plugin | Medium | 5.5 | 2023-01-13 19:54:34 | Deep Dive |
| CVE-2022-1580 | Site Offline < 1.5.3 - Access Bypass | Unknown | Site Offline Or Coming Soon Or Maintenance Mode | 中危 | - | 2022-09-19 14:00:47 | Deep Dive |
| CVE-2022-2516 | Visual Composer Website Builder <= 45.0 - Authenticated Stored Cross-Site Scripting via 'Title' | visualcomposer | Visual Composer Website Builder, Landing Page Builder, Custom Theme Builder, Maintenance Mode & Coming Soon Pages | Medium | 6.4 | 2022-09-06 17:18:58 | Deep Dive |
| CVE-2022-2430 | Visual Composer Website Builder <= 45.0 - Authenticated Stored Cross-Site Scripting via 'Text Block' | visualcomposer | Visual Composer Website Builder, Landing Page Builder, Custom Theme Builder, Maintenance Mode & Coming Soon Pages | Medium | 6.4 | 2022-09-06 17:18:56 | Deep Dive |
| CVE-2021-36829 | WordPress Launcher: Coming Soon & Maintenance Mode plugin <= 1.0.11 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability | MyThemeShop | Launcher: Coming Soon & Maintenance Mode (WordPress plugin) | Medium | 4.8 | 2022-09-06 17:18:51 | Deep Dive |
| CVE-2022-1576 | WP Maintenance Mode & Coming Soon < 2.4.5 - Subscribed Users Deletion via CSRF | Unknown | WP Maintenance Mode & Coming Soon | 中危 | - | 2022-07-11 12:55:56 | Deep Dive |
| CVE-2022-1945 | Coming Soon and Maintenance by Colorlib < 1.0.99 - Admin+ Stored Cross Site Scripting | Unknown | Coming Soon & Maintenance Mode by Colorlib | 中危 | - | 2022-06-20 10:26:21 | Deep Dive |
| CVE-2022-0898 | IgniteUp <= 3.4.1 - Admin+ Stored Cross-Site Scripting | Unknown | IgniteUp – Coming Soon and Maintenance Mode | 中危 | - | 2022-05-09 16:50:40 | Deep Dive |
| CVE-2022-0199 | Coming soon and Maintenance mode < 3.6.8 - Arbitrary Email Sending to Subscribed Users via CSRF | Unknown | Coming soon and Maintenance mode | 中危 | - | 2022-02-21 10:46:04 | Deep Dive |
| CVE-2022-0164 | Coming soon and Maintenance mode < 3.6.7 - Subscriber+ Arbitrary Email Sending to Subscribed Users | Unknown | Coming soon and Maintenance mode | 中危 | - | 2022-02-21 10:46:00 | Deep Dive |
| CVE-2021-24867 | Backdoored Plugins & Themes from AccessPress Themes | AccessPress Themes | Frontend Post WordPress Plugin – AccessPress Anonymous Post | 超危 | - | 2022-02-21 10:45:39 | Deep Dive |
| CVE-2021-24539 | Coming Soon, Under Construction & Maintenance Mode By Dazzler < 1.6.7 - Admin+ Stored Cross-Site Scripting | Unknown | Coming Soon, Under Construction & Maintenance Mode By Dazzler | 中危 | - | 2021-11-01 08:45:58 | Deep Dive |