| CVE-2026-2389 | Complianz – GDPR/CCPA Cookie Consent <= 7.4.4.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Content Filter | complianz | Complianz – GDPR/CCPA Cookie Consent | Medium | 4.9 | 2026-03-26 13:26:07 | Deep Dive |
| CVE-2025-11754 | Cookie Banner, Cookie Consent, Consent Log, Cookie Scanner, Script Blocker (for GDPR, CCPA & ePrivacy) : WP Cookie Consent <= 4.1.2 - Missing Authorization to Sensitive Information Exposure | wplegalpages | Cookie Banner for GDPR / CCPA – WPLP Cookie Consent | High | 7.5 | 2026-02-19 03:25:13 | Deep Dive |
| CVE-2025-11185 | Complianz | GDPR/CCPA Cookie Consent <= 7.4.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | complianz | Complianz – GDPR/CCPA Cookie Consent | Medium | 6.4 | 2026-02-18 09:25:52 | Deep Dive |
| CVE-2026-1084 | Cookie consent for developers <= 1.7.1 - Authenticated (Administrator+) Stored Cross-Site Scripting via Multiple Settings Fields | lovor | Cookie consent for developers | Medium | 4.4 | 2026-01-24 07:26:47 | Deep Dive |
| CVE-2025-66080 | WordPress WP Cookie Notice for GDPR, CCPA & ePrivacy Consent plugin <= 4.0.3 - Broken Access Control vulnerability | WP Legal Pages | WP Cookie Notice for GDPR, CCPA & ePrivacy Consent | Medium | 5.3 | 2025-12-30 16:10:41 | Deep Dive |
| CVE-2025-14061 | Cookie Banner, Cookie Consent, Consent Log, Cookie Scanner, Script Blocker (for GDPR, CCPA & ePrivacy) : WP Cookie Consent <= 4.0.7 - Missing Authorization to Unauthenticated Arbitrary Post Deletion | wplegalpages | Cookie Banner for GDPR / CCPA – WPLP Cookie Consent | Medium | 5.3 | 2025-12-17 06:36:59 | Deep Dive |
| CVE-2025-66133 | WordPress WP Cookie Notice for GDPR, CCPA & ePrivacy Consent plugin <= 4.0.7 - Broken Access Control vulnerability | WP Legal Pages | WP Cookie Notice for GDPR, CCPA & ePrivacy Consent | Medium | 5.3 | 2025-12-16 08:12:55 | Deep Dive |
| CVE-2025-66075 | WordPress WP Cookie Notice for GDPR, CCPA & ePrivacy Consent plugin <= 4.0.3 - Broken Access Control vulnerability | WP Legal Pages | WP Cookie Notice for GDPR, CCPA & ePrivacy Consent | Medium | 4.3 | 2025-11-21 12:29:57 | Deep Dive |
| CVE-2025-53316 | WordPress WP GDPR Cookie Consent plugin <= 1.0.0 - Cross Site Request Forgery (CSRF) Vulnerability | Shahjahan Jewel | WP GDPR Cookie Consent | High | 7.1 | 2025-11-06 15:54:05 | Deep Dive |
| CVE-2025-49390 | WordPress Cookie Notice & Consent plugin <= 1.6.4 - Cross Site Scripting (XSS) vulnerability | christophrado | Cookie Notice & Consent | High | 7.1 | 2025-11-06 15:53:52 | Deep Dive |
| CVE-2025-12136 | Real Cookie Banner: GDPR & ePrivacy Cookie Consent <= 5.2.4 - Authenticated (Admin+) Server-Side Request Forgery via scan-without-login Endpoint | devowl | Real Cookie Banner: GDPR & ePrivacy Cookie Consent | Medium | 6.8 | 2025-10-24 09:23:30 | Deep Dive |
| CVE-2025-10496 | Cookie Notice & Consent <= 1.6.5 - Unauthenticated Stored Cross-Site Scripting | christophrado | Cookie Notice & Consent | High | 7.2 | 2025-10-09 02:09:54 | Deep Dive |
| CVE-2025-58026 | WordPress Termageddon: Cookie Consent & Privacy Compliance Plugin <= 1.8.1 - Cross Site Scripting (XSS) Vulnerability | termageddon | Termageddon: Cookie Consent & Privacy Compliance | Medium | 6.5 | 2025-09-22 18:23:57 | Deep Dive |
| CVE-2025-58607 | WordPress Cookie Notice & Consent Banner for GDPR & CCPA Compliance Plugin <= 1.7.11 - Cross Site Scripting (XSS) Vulnerability | GDPR Info | Cookie Notice & Consent Banner for GDPR & CCPA Compliance | Medium | 6.5 | 2025-09-03 14:36:43 | Deep Dive |
| CVE-2025-49866 | WordPress Beautiful Cookie Consent Banner plugin <= 4.6.1 - Cross Site Scripting (XSS) Vulnerability | Nikel | Beautiful Cookie Consent Banner | 高危 | - | 2025-07-04 11:18:00 | Deep Dive |
| CVE-2025-5682 | Klaro Cookie & Consent Management - Moderately critical - Cross-site Scripting - SA-CONTRIB-2025-080 | Drupal | Klaro Cookie & Consent Management | - | - | 2025-06-26 13:33:04 | Deep Dive |
| CVE-2025-49285 | WordPress WP Cookie Notice for GDPR, CCPA & ePrivacy Consent plugin <= 3.8.0 - Cross Site Request Forgery (CSRF) Vulnerability | WP Legal Pages | WP Cookie Notice for GDPR, CCPA & ePrivacy Consent | Medium | 4.3 | 2025-06-06 12:53:42 | Deep Dive |
| CVE-2025-1485 | Real Cookie Banner < 5.1.6 - Admin+ Stored XSS | Unknown | Real Cookie Banner: GDPR & ePrivacy Cookie Consent | - | - | 2025-06-02 06:00:02 | Deep Dive |
| CVE-2024-8286 | GDPR Cookie Consent <= 2.6.0 - Bulk Delete via CSRF | Unknown | webtoffee-gdpr-cookie-consent | - | - | 2025-05-15 20:07:15 | Deep Dive |
| CVE-2024-8397 | GDPR Cookie Consent <= 2.6.0 - Unauthenticated Stored XSS | Unknown | webtoffee-gdpr-cookie-consent | - | - | 2025-05-15 20:07:15 | Deep Dive |