Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Vulnerability List - Page 38

Found 2564 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2024-13458 WordPress SEO Friendly Accordion FAQ with AI assisted content generation <= 2.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting qchantelnoticeWordPress SEO Friendly Accordion FAQ with AI assisted content generation Medium 6.4 2025-01-25 07:24:16 Deep Dive
CVE-2024-13599 LearnPress – WordPress LMS Plugin <= 4.2.7.5 - Authenticated (LP Instructor+) Stored Cross-Site Scripting via Lesson Name thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses Medium 6.4 2025-01-25 07:24:16 Deep Dive
CVE-2025-24666 WordPress Hyve Lite plugin <= 1.2.2 - Cross Site Scripting (XSS) vulnerability ThemeisleAI Chatbot for WordPress – Hyve Lite Medium 5.9 2025-01-24 17:24:51 Deep Dive
CVE-2025-24588 WordPress Patreon WordPress plugin <= 1.9.1 - Broken Access Control vulnerability patreonPatreon WordPress Medium 6.5 2025-01-24 17:24:26 Deep Dive
CVE-2024-13698 Jobify - Job Board WordPress Theme <= 4.2.7 - Missing Authorization to Unauthenticated Server-Side Request Forgery, Arbitrary Image Upload, and Image Generation AstoundifyJobify - Job Board WordPress Theme Medium 6.5 2025-01-24 15:21:44 Deep Dive
CVE-2024-13572 Precious Metals Charts and Widgets for WordPress <= 1.2.8 - Authenticated (Contributor+) Stored Cross-site Scripting nfusionsolutionsPrecious Metals Charts and Widgets for WordPress Medium 6.4 2025-01-24 11:07:31 Deep Dive
CVE-2024-13422 SEO Blogger to WordPress Migration using 301 Redirection <= 0.4.8 - Reflected Cross-Site Scripting suhas93SEO Blogger to WordPress Migration using 301 Redirection Medium 6.1 2025-01-23 11:13:29 Deep Dive
CVE-2025-23931 WordPress WordPress Local SEO plugin <= 2.3 - SQL Injection vulnerability Oliver FuhrmannWordPress Local SEO Critical 9.3 2025-01-22 14:29:24 Deep Dive
CVE-2025-23867 WordPress WordPress File Search Plugin <= 1.2 - Reflected Cross Site Scripting (XSS) vulnerability markcokerWordPress File Search High 7.1 2025-01-22 14:29:23 Deep Dive
CVE-2025-23535 WordPress REAL WordPress Sidebar plugin <= 0.1 - Cross Site Scripting (XSS) vulnerability martin_ziegertREAL WordPress Sidebar High 7.1 2025-01-22 14:29:14 Deep Dive
CVE-2024-13496 GamiPress <= 7.3.1 - Unauthenticated SQL Injection via orderby Parameter rubengcGamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress High 7.5 2025-01-22 11:07:59 Deep Dive
CVE-2024-13499 GamiPress <= 7.2.1 - Unauthenticated Arbitrary Shortcode Execution via gamipress_do_shortcode() Function rubengcGamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress High 7.3 2025-01-22 11:07:58 Deep Dive
CVE-2024-13495 GamiPress <= 7.2.1 - Unauthenticated Arbitrary Shortcode Execution via gamipress_ajax_get_logs Function rubengcGamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress High 7.3 2025-01-22 11:07:57 Deep Dive
CVE-2024-12879 WPBot Pro Wordpress Chatbot <= 13.5.5 - Missing Authorization to Authenticated (Subscriber+) Simple Text Response Creation QuantumCloudWPBot Pro Wordpress Chatbot Medium 4.3 2025-01-22 05:23:05 Deep Dive
CVE-2024-13091 WPBot Pro Wordpress Chatbot <= 13.5.4 - Unauthenticated Arbitrary File Upload QuantumCloudWPBot Pro Wordpress Chatbot Critical 9.8 2025-01-21 23:20:51 Deep Dive
CVE-2025-22735 WordPress Tag Cloud Plugin - Tag Groups plugin <= 2.0.4 - Reflected Cross Site Scripting (XSS) vulnerability Steve BurgeWordPress Tag Cloud Plugin – Tag Groups High 7.1 2025-01-21 13:40:35 Deep Dive
CVE-2024-49333 WordPress Hero Menu plugin <= 1.16.5 - SQL Injection vulnerability NotFoundHero Mega Menu - Responsive WordPress Menu Plugin High 8.5 2025-01-21 13:40:33 Deep Dive
CVE-2024-49303 WordPress Hero Menu plugin <= 1.16.5 - SQL Injection vulnerability NotFoundHero Mega Menu - Responsive WordPress Menu Plugin High 8.5 2025-01-21 13:40:33 Deep Dive
CVE-2024-49300 WordPress Hero Menu plugin <= 1.16.5 - Reflected Cross Site Scripting (XSS) vulnerability NotFoundHero Mega Menu - Responsive WordPress Menu Plugin High 7.1 2025-01-21 13:40:32 Deep Dive
CVE-2024-13184 The Ultimate WordPress Toolkit – WP Extended <= 3.0.12 - Unauthenticated SQL Injection via Login Attempts Module wpextendedThe Ultimate WordPress Toolkit – WP Extended High 7.5 2025-01-18 08:26:39 Deep Dive