| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-2607 | Multiple Page Generator Plugin <= 3.3.17 - Authenticated (Administrator+) SQL Injection | themeisle | Multiple Page Generator Plugin – MPG | High | 7.2 | 2023-06-09 05:33:11 | Deep Dive |
| CVE-2023-2084 | Essential Blocks <= 4.0.6 - Missing Authorization via get | wpdevteam | Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns | Medium | 4.3 | 2023-06-09 05:33:10 | Deep Dive |
| CVE-2022-4950 | Cool Plugins (Various Versions) - Arbitrary Plugin Installation and Activation | narinder-singh | The Events Calendar Events Notification Bar Addon | High | 8.8 | 2023-06-07 01:51:53 | Deep Dive |
| CVE-2020-36722 | Visual Composer <= 26.0 - Multiple Cross-Site Scripting | visualcomposer | Visual Composer Website Builder | Medium | 5.5 | 2023-06-07 01:51:43 | Deep Dive |
| CVE-2019-25140 | Coming Soon Page & Maintenance Mode <= 1.8.1 - Stored Cross Site Scripting | wpshopmart | Coming Soon Page & Maintenance Mode | High | 7.2 | 2023-06-07 01:51:26 | Deep Dive |
| CVE-2020-36709 | Page Builder: KingComposer < 2.9.4 - Stored Cross-Site Scripting | kingthemes | Page Builder: KingComposer – Free Drag and Drop page builder by King-Theme | Medium | 5.5 | 2023-06-07 01:51:24 | Deep Dive |
| CVE-2019-25139 | Coming Soon Page & Maintenance Mode <= 1.8.1 - Unauthenticated Settings Reset | wpshopmart | Coming Soon Page & Maintenance Mode | Medium | 6.5 | 2023-06-07 01:51:23 | Deep Dive |
| CVE-2020-36707 | Coming Soon & Maintenance Mode Page <= 1.57 - Cross-Site Request Forgery | hookandhook | Coming Soon & Maintenance Mode Page & Under Construction | High | 8.8 | 2023-06-07 01:51:22 | Deep Dive |
| CVE-2020-36701 | Page Builder: KingComposer < 2.9.4 - Arbitrary File Upload | kingthemes | Page Builder: KingComposer – Free Drag and Drop page builder by King-Theme | High | 8.8 | 2023-06-07 01:51:18 | Deep Dive |
| CVE-2020-36703 | Elementor Website Builder <= 2.9.7 - Authenticated Stored Cross-Site Scripting | elemntor | Elementor Website Builder – more than just a page builder | Medium | 6.4 | 2023-06-07 01:51:17 | Deep Dive |
| CVE-2020-36700 | Page Builder: KingComposer < 2.9.4 - Authorization Bypass due to Improper Access Control | kingthemes | Page Builder: KingComposer – Free Drag and Drop page builder by King-Theme | High | 8.8 | 2023-06-07 01:51:14 | Deep Dive |
| CVE-2020-36699 | Quick Page/Post Redirect Plugin <= 5.1.9 - Redirect Security Bypass | anadnet | Quick Page/Post Redirect Plugin | Medium | 4.3 | 2023-06-07 01:51:13 | Deep Dive |
| CVE-2023-3052 | Page Builder by AZEXO <= 1.27.133 - Cross-Site Request Forgery to Post Creation/Modification/Deletion | azexo | Page Builder with Image Map by AZEXO | Medium | 6.3 | 2023-06-02 23:37:56 | Deep Dive |
| CVE-2023-3053 | Page Builder by AZEXO <= 1.27.133 - Missing Authorization to Post Creation | azexo | Page Builder with Image Map by AZEXO | Medium | 5.4 | 2023-06-02 23:37:56 | Deep Dive |
| CVE-2023-3055 | Page Builder by AZEXO <= 1.27.133 - Cross-Site Request Forgery to Stored Cross-Site Scripting via azh_save | azexo | Page Builder with Image Map by AZEXO | Medium | 6.1 | 2023-06-02 23:37:56 | Deep Dive |
| CVE-2023-3051 | Page Builder by AZEXO <= 1.27.133 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | azexo | Page Builder with Image Map by AZEXO | Medium | 6.4 | 2023-06-02 23:37:55 | Deep Dive |
| CVE-2023-2545 | WordPress Plugin Feather Login Page 安全漏洞 | featherplugins | Custom Login Page | Temporary Users | Rebrand Login | Login Captcha | High | 8.1 | 2023-05-31 02:40:21 | Deep Dive |
| CVE-2023-2547 | WordPress Plugin Feather Login Page 安全漏洞 | featherplugins | Custom Login Page | Temporary Users | Rebrand Login | Login Captcha | Medium | 5.4 | 2023-05-31 02:40:20 | Deep Dive |
| CVE-2023-2549 | WordPress Plugin Feather Login Page Feather Login Page 跨站请求伪造漏洞 | featherplugins | Custom Login Page | Temporary Users | Rebrand Login | Login Captcha | High | 8.8 | 2023-05-31 02:40:20 | Deep Dive |
| CVE-2022-46810 | WordPress Thank You Page Customizer for WooCommerce – Increase Your Sales Plugin <= 1.0.13 is vulnerable to Cross Site Request Forgery (CSRF) | VillaTheme | Thank You Page Customizer for WooCommerce – Increase Your Sales | Medium | 4.3 | 2023-05-25 11:18:45 | Deep Dive |