| CVE-2022-29923 | WordPress Quick Restaurant Reservations plugin <= 1.4.1 - Authenticated Reflected Cross-Site Scripting (XSS) vulnerability | ThingsForRestaurants | Quick Restaurant Reservations (WordPress plugin) | Medium | 5.9 | 2022-07-20 18:39:11 | Deep Dive |
| CVE-2022-29454 | WordPress Better Messages plugin <= 1.9.9.148 - Cross-Site Request Forgery (CSRF) vulnerability | WordPlus | Better Messages (WordPress plugin) | Low | 3.1 | 2022-07-20 18:36:46 | Deep Dive |
| CVE-2021-36849 | WordPress Social Media Share Buttons plugin <= 3.8.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability | René Hermenau | Social Media Share Buttons | MashShare (WordPress plugin) | Low | 3.4 | 2022-07-20 18:35:30 | Deep Dive |
| CVE-2013-4144 | Wordpress Plugin swfupload 注入漏洞 | - | swfupload wordpress plugin | 超危 | - | 2022-06-30 17:21:21 | Deep Dive |
| CVE-2022-1904 | Easy Pricing Tables < 3.2.1 - Reflected Cross-Site-Scripting | Unknown | Pricing Tables WordPress Plugin – Easy Pricing Tables | 中危 | - | 2022-06-27 08:58:25 | Deep Dive |
| CVE-2022-0444 | XCloner < 4.3.6 - Plugin Settings Reset | Unknown | Backup, Restore and Migrate WordPress Sites With the XCloner Plugin | 中危 | - | 2022-06-27 08:55:47 | Deep Dive |
| CVE-2013-1916 | WordPress plugin User Photo 代码问题漏洞 | - | WordPress Plugin User Photo | 高危 | - | 2022-06-24 15:00:17 | Deep Dive |
| CVE-2021-36827 | WordPress Ninja Forms Contact Form plugin <= 3.6.9 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability | Saturday Drive | Ninja Forms Contact Form (WordPress plugin) | Medium | 4.8 | 2022-06-16 17:11:17 | Deep Dive |
| CVE-2022-32280 | WordPress XO Slider plugin <= 3.3.2 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability | Xakuro | XO Slider (WordPress plugin) | Medium | 5.4 | 2022-06-15 19:54:41 | Deep Dive |
| CVE-2022-29452 | WordPress Export All URLs plugin <= 4.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability | Atlas Gondal | Export All URLs (WordPress plugin) | Low | 3.4 | 2022-06-15 19:52:25 | Deep Dive |
| CVE-2022-28612 | WordPress Custom Popup Builder plugin <= 1.3.1 - Improper Access Control vulnerability leading to multiple Authenticated Stored XSS | Muneeb | Custom Popup Builder (WordPress plugin) | Medium | 5.4 | 2022-06-15 19:34:24 | Deep Dive |
| CVE-2021-36891 | WordPress Photo Gallery by Supsystic plugin <= 1.15.5 - Cross-Site Request Forgery (CSRF) leading to Plugin Settings Change | Supsystic | Photo Gallery by Supsystic (WordPress plugin) | Medium | 5.4 | 2022-06-15 19:16:58 | Deep Dive |
| CVE-2022-29443 | WordPress Hotel Booking plugin <= 3.0 - Multiple Authenticated Stored Cross-Site Scripting (XSS) vulnerabilities | Nicdark | Hotel Booking (WordPress plugin) | Medium | 4.1 | 2022-06-15 18:55:16 | Deep Dive |
| CVE-2022-29450 | WordPress Admin Management Xtended plugin <= 2.4.4 - Multiple Cross-Site Request Forgery (CSRF) vulnerabilities | Oliver Schlöbe | Admin Management Xtended (WordPress plugin) | Medium | 5.4 | 2022-06-15 18:52:31 | Deep Dive |
| CVE-2022-29442 | Private Messages For WordPress <= 2.1.10 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability | Rilwis | Private Messages For WordPress (WordPress plugin) | Medium | 5.4 | 2022-06-15 15:38:44 | Deep Dive |
| CVE-2022-29441 | WordPress Private Messages For WordPress plugin <= 2.1.10 - Sending Messages via Cross-Site Request Forgery (CSRF) vulnerability | Rilwis | Private Messages For WordPress (WordPress plugin) | Medium | 4.3 | 2022-06-15 15:35:57 | Deep Dive |
| CVE-2022-29440 | WordPress Promotion Slider plugin <= 3.3.4 - Multiple Authenticated Stored Cross-Site Scripting (XSS) vulnerabilities | Micah Wood | Promotion Slider (WordPress plugin) | Medium | 5.4 | 2022-06-15 15:33:50 | Deep Dive |
| CVE-2022-29439 | WordPress Image Slider by NextCode plugin <= 1.1.2 - Slider Deletion via Cross-Site Request Forgery (CSRF) vulnerability | NextCode | Image Slider by NextCode – Photo & Video SLider (WordPress plugin) | Medium | 5.4 | 2022-06-15 15:31:35 | Deep Dive |
| CVE-2022-29438 | WordPress Image Slider by NextCode plugin <= 1.1.2 - Authenticated Persistent Cross-Site Scripting (XSS) vulnerability | NextCode | Image Slider by NextCode – Photo & Video SLider (WordPress plugin) | Medium | 4.8 | 2022-06-15 15:14:43 | Deep Dive |
| CVE-2022-29437 | WordPress Image Slider by NextCode plugin <= 1.1.2 - Multiple Cross-Site Request Forgery (CSRF) vulnerabilities | NextCode | Image Slider by NextCode – Photo & Video SLider (WordPress plugin) | Medium | 5.4 | 2022-06-15 15:12:24 | Deep Dive |