| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-47548 | WordPress Integrate Google Drive Plugin <= 1.3.2 is vulnerable to Open Redirection | SoftLab | Integrate Google Drive – Browse, Upload, Download, Embed, Play, Share, Gallery, and Manage Your Google Drive Files Into Your WordPress Site | Medium | 4.7 | 2023-12-07 12:15:07 | Deep Dive |
| CVE-2023-47792 | WordPress Big File Uploads Plugin <= 2.1.1 is vulnerable to Cross Site Request Forgery (CSRF) | Infinite Uploads | Big File Uploads – Increase Maximum File Upload Size | Medium | 4.3 | 2023-11-22 18:41:25 | Deep Dive |
| CVE-2023-5822 | Drag and Drop Multiple File Upload - Contact Form 7 <= 1.3.7.3 - Unauthenticated Arbitrary File Upload | glenwpcoder | Drag and Drop Multiple File Upload for Contact Form 7 | High | 8.1 | 2023-11-22 15:33:21 | Deep Dive |
| CVE-2023-5458 | CITS Support svg, webp Media and TTF,OTF File Upload < 3.0 - Author+ Stored XSS via SVG | Unknown | CITS Support svg, webp Media and TTF,OTF File Upload | 中危 | - | 2023-10-31 13:54:42 | Deep Dive |
| CVE-2023-4821 | Drag and Drop Multiple File Upload < 1.1.1 - Unauthenticated Stored Cross-Site Scripting | Unknown | Drag and Drop Multiple File Upload for WooCommerce | 中危 | - | 2023-10-16 19:39:24 | Deep Dive |
| CVE-2023-4811 | WordPress File Upload < 4.23.3 - Author+ Stored Cross-Site Scripting | Unknown | WordPress File Upload | 中危 | - | 2023-10-16 19:39:17 | Deep Dive |
| CVE-2023-3720 | Upload Media By URL < 1.0.8 - Stored XSS via CSRF | Unknown | Upload Media By URL | 中危 | - | 2023-08-30 14:22:00 | Deep Dive |
| CVE-2023-2143 | Enable SVG, WebP & ICO Upload <= 1.0.3 - Author+ Stored XSS | Unknown | Enable SVG, WebP & ICO Upload | 中危 | - | 2023-07-17 13:29:53 | Deep Dive |
| CVE-2023-27432 | WordPress Manage Upload Limit Plugin <= 1.0.4 is vulnerable to Cross Site Scripting (XSS) | WpSimpleTools | Manage Upload Limit | High | 7.1 | 2023-06-21 13:02:45 | Deep Dive |
| CVE-2023-2751 | Upload Resume <= 1.2.0 - Captcha Bypass | Unknown | Upload Resume | 中危 | - | 2023-06-19 10:52:52 | Deep Dive |
| CVE-2023-2684 | File Renaming on Upload < 2.5.2 - Admin+ Stored Cross-Site Scripting | Unknown | File Renaming on Upload | 中危 | - | 2023-06-19 10:52:40 | Deep Dive |
| CVE-2022-42880 | WordPress Auto Upload Images Plugin <= 3.3 is vulnerable to Cross Site Request Forgery (CSRF) | Ali Irani | Auto Upload Images | Medium | 6.1 | 2023-06-13 13:50:38 | Deep Dive |
| CVE-2023-2688 | WordPress File Upload / WordPress File Upload Pro <= 4.19.1 - Authenticated (Administrator+) Path Traversal | nickboss | Iptanus File Upload | Medium | 4.9 | 2023-06-09 05:33:27 | Deep Dive |
| CVE-2023-2767 | WordPress File Upload / WordPress File Upload Pro <= 4.19.1 - Authenticated (Administrator+) Stored Cross-Site Scripting | nickboss | Iptanus File Upload | Medium | 4.4 | 2023-06-09 05:33:13 | Deep Dive |
| CVE-2023-25467 | WordPress Resize at Upload Plus Plugin <= 1.3 is vulnerable to Cross Site Request Forgery (CSRF) | Daniel Mores, A. Huizinga | Resize at Upload Plus | Medium | 5.4 | 2023-05-26 14:02:31 | Deep Dive |
| CVE-2023-25781 | WordPress Upload File Type Settings Plugin Plugin <= 1.1 is vulnerable to Cross Site Scripting (XSS) | Sebastian Krysmanski | Upload File Type Settings Plugin | Medium | 5.9 | 2023-05-26 11:19:00 | Deep Dive |
| CVE-2022-45364 | WordPress Drag and Drop Multiple File Upload – Contact Form 7 Plugin <= 1.3.6.5 is vulnerable to Cross Site Request Forgery (CSRF) | Glen Don L. Mongaya | Drag and Drop Multiple File Upload – Contact Form 7 | Medium | 5.4 | 2023-05-24 15:48:57 | Deep Dive |
| CVE-2023-1282 | Drag and Drop Multiple File Upload PRO - Reflected Cross-Site Scripting | Unknown | Drag and Drop Multiple File Upload PRO - Contact Form 7 Standard | 中危 | - | 2023-04-17 12:17:42 | Deep Dive |
| CVE-2023-0605 | Auto Rename Media On Upload < 1.1.0 - Admin+ Stored XSS | Unknown | Auto Rename Media On Upload | 中危 | - | 2023-04-10 13:17:57 | Deep Dive |
| CVE-2023-1112 | Drag and Drop Multiple File Upload Contact Form 7 admin-ajax.php path traversal | - | Drag and Drop Multiple File Upload Contact Form 7 | Medium | 4.7 | 2023-03-01 09:54:39 | Deep Dive |