VYPR

Vendor CVEs

WordPress

All CVEs

33,191 total · sorted by risk
  • CVE-2023-1020CriApr 24, 2023
    risk 0.64cvss 9.8epss 0.05

    The Steveas WP Live Chat Shoutbox WordPress plugin through 1.4.2 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

  • CVE-2023-2027CriApr 15, 2023
    risk 0.64cvss 9.8epss 0.01

    The ZM Ajax Login & Register plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.0.2. This is due to insufficient verification on the user being supplied during a Facebook login through the plugin. This makes it possible for…

  • CVE-2023-1478CriApr 10, 2023
    risk 0.64cvss 9.8epss 0.01

    The Hummingbird WordPress plugin before 3.4.2 does not validate the generated file path for page cache files before writing them, leading to a path traversal vulnerability in the page cache module.

  • CVE-2022-4939CriApr 5, 2023
    risk 0.64cvss 9.8epss 0.02

    THe WCFM Membership plugin for WordPress is vulnerable to privilege escalation in versions up to, and including 2.10.0, due to a missing capability check on the wp_ajax_nopriv_wcfm_ajax_controller AJAX action that controls membership settings. This makes it possible for…

  • CVE-2023-28667CriMar 22, 2023
    risk 0.64cvss 9.8epss 0.01

    The Lead Generated WordPress Plugin, version <= 1.23, was affected by an unauthenticated insecure deserialization issue. The tve_labels parameter of the tve_api_form_submit action is passed to the PHP unserialize() function without being sanitized or verified, and as a result…

  • CVE-2023-27638CriMar 22, 2023
    risk 0.64cvss 9.8epss 0.03

    An issue was discovered in the tshirtecommerce (aka Custom Product Designer) component 2.1.4 for PrestaShop. An HTTP request can be forged with a compromised tshirtecommerce_design_cart_id GET parameter in order to exploit an insecure parameter in the functions…

  • CVE-2023-0037CriMar 13, 2023
    risk 0.64cvss 9.8epss 0.04

    The 10Web Map Builder for Google Maps WordPress plugin before 1.0.73 does not properly sanitise and escape some parameters before using them in an SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

  • CVE-2022-4328CriMar 6, 2023
    risk 0.64cvss 9.8epss 0.04

    The WooCommerce Checkout Field Manager WordPress plugin before 18.0 does not validate files to be uploaded, which could allow unauthenticated attackers to upload arbitrary files such as PHP on the server

  • CVE-2023-26326CriFeb 23, 2023
    risk 0.64cvss 9.8epss 0.04

    The BuddyForms WordPress plugin, in versions prior to 2.7.8, was affected by an unauthenticated insecure deserialization issue. An unauthenticated attacker could leverage this issue to call files using a PHAR wrapper that will deserialize the data and call arbitrary PHP Objects…

  • CVE-2023-0232CriFeb 21, 2023
    risk 0.64cvss 9.8epss 0.03

    The ShopLentor WordPress plugin before 2.5.4 unserializes user input from cookies in order to track viewed products and user data, which could lead to PHP Object Injection.

  • CVE-2022-4445CriFeb 13, 2023
    risk 0.64cvss 9.8epss 0.01

    The FL3R FeelBox WordPress plugin through 8.1 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

  • CVE-2023-0556CriJan 27, 2023
    risk 0.64cvss 9.8epss 0.01

    The ContentStudio plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on several functions in versions up to, and including, 1.2.5. This makes it possible for unauthenticated attackers to obtain the blog metadata (via the function…

  • CVE-2022-4693CriJan 23, 2023
    risk 0.64cvss 9.8epss 0.02

    The User Verification WordPress plugin before 1.0.94 was affected by an Auth Bypass security vulnerability. To bypass authentication, we only need to know the user’s username. Depending on whose username we know, which can be easily queried because it is usually public data,…

  • CVE-2022-4383CriJan 23, 2023
    risk 0.64cvss 9.8epss 0.01

    The CBX Petition for WordPress plugin through 1.0.3 does not properly sanitize and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

  • CVE-2022-0316CriJan 23, 2023
    risk 0.64cvss 9.8epss 0.02

    The WeStand WordPress theme before 2.1, footysquare WordPress theme, aidreform WordPress theme, statfort WordPress theme, club-theme WordPress theme, kingclub-theme WordPress theme, spikes WordPress theme, spikes-black WordPress theme, soundblast WordPress theme, bolster…

  • CVE-2022-4447CriJan 16, 2023
    risk 0.64cvss 9.8epss 0.05

    The Fontsy WordPress plugin through 1.8.6 does not properly sanitize and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

  • CVE-2022-4357CriJan 2, 2023
    risk 0.64cvss 9.8epss 0.01

    The LetsRecover WordPress plugin before 1.2.0 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

  • CVE-2022-4298CriJan 2, 2023
    risk 0.64cvss 9.8epss 0.02

    The Wholesale Market WordPress plugin before 2.2.1 does not have authorisation check, as well as does not validate user input used to generate system path, allowing unauthenticated attackers to download arbitrary file from the server.

  • CVE-2022-4099CriJan 2, 2023
    risk 0.64cvss 9.8epss 0.01

    The Joy Of Text Lite WordPress plugin before 2.3.1 does not properly sanitise and escape some parameters before using them in SQL statements accessible to unauthenticated users, leading to unauthenticated SQL injection

  • CVE-2022-4059CriJan 2, 2023
    risk 0.64cvss 9.8epss 0.05

    The Cryptocurrency Widgets Pack WordPress plugin before 2.0 does not sanitise and escape some parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

  • CVE-2022-4049CriJan 2, 2023
    risk 0.64cvss 9.8epss 0.05

    The WP User WordPress plugin through 7.0 does not properly sanitize and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by unauthenticated users.

  • CVE-2022-3241CriJan 2, 2023
    risk 0.64cvss 9.8epss 0.01

    The Build App Online WordPress plugin before 1.0.19 does not properly sanitise and escape some parameters before using them in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

  • CVE-2022-4117CriDec 26, 2022
    risk 0.64cvss 9.8epss 0.05

    The IWS WordPress plugin through 1.0 does not properly escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to an unauthenticated SQL injection.

  • CVE-2022-4047CriDec 26, 2022
    risk 0.64cvss 9.8epss 0.06

    The Return Refund and Exchange For WooCommerce WordPress plugin before 4.0.9 does not validate attachment files to be uploaded via an AJAX action available to unauthenticated users, which could allow them to upload arbitrary files such as PHP and lead to RCE

  • CVE-2022-4063CriDec 19, 2022
    risk 0.64cvss 9.8epss 0.10

    The InPost Gallery WordPress plugin before 2.1.4.1 insecurely uses PHP's extract() function when rendering HTML views, allowing attackers to force the inclusion of malicious files & URLs, which may enable them to run code on servers.

  • CVE-2022-4050CriDec 19, 2022
    risk 0.64cvss 9.8epss 0.05

    The JoomSport WordPress plugin before 5.2.8 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by unauthenticated users

  • CVE-2021-4226CriDec 15, 2022
    risk 0.64cvss 9.8epss 0.01

    RSFirewall tries to identify the original IP address by looking at different HTTP headers. A bypass is possible due to the way it is implemented.

  • CVE-2022-3982CriDec 12, 2022
    risk 0.64cvss 9.8epss 0.04

    The Booking calendar, Appointment Booking System WordPress plugin before 3.2.2 does not validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as PHP and achieve RCE

  • CVE-2022-42888CriDec 6, 2022
    risk 0.64cvss 9.8epss 0.01

    Unauth. Privilege Escalation vulnerability in ARMember premium plugin <= 5.5.1 on WordPress.

  • CVE-2022-3603CriNov 28, 2022
    risk 0.64cvss 9.8epss 0.01

    The Export customers list csv for WooCommerce, WordPress users csv, export Guest customer list WordPress plugin before 2.0.69 does not validate data when outputting it back in a CSV file, which could lead to CSV injection.

  • CVE-2022-3634CriNov 21, 2022
    risk 0.64cvss 9.8epss 0.04

    The Contact Form 7 Database Addon WordPress plugin before 1.2.6.5 does not validate data when output it back in a CSV file, which could lead to CSV injection

  • CVE-2022-3600CriNov 21, 2022
    risk 0.64cvss 9.8epss 0.01

    The Easy Digital Downloads WordPress plugin before 3.1.0.2 does not validate data when its output in a CSV file, which could lead to CSV injection.

  • CVE-2021-24649CriNov 21, 2022
    risk 0.64cvss 9.8epss 0.01

    The WP User Frontend WordPress plugin before 3.5.29 uses a user supplied argument called urhidden in its registration form, which contains the role for the account to be created with, encrypted via wpuf_encryption(). This could allow an attacker having access to the AUTH_KEY and…

  • CVE-2022-42698CriNov 18, 2022
    risk 0.64cvss 9.8epss 0.01

    Unauth. Arbitrary File Upload vulnerability in WordPress Api2Cart Bridge Connector plugin <= 1.1.0 on WordPress.

  • CVE-2022-40200CriNov 17, 2022
    risk 0.64cvss 9.9epss 0.01

    Auth. (subscriber+) Arbitrary File Upload vulnerability in wpForo Forum plugin <= 2.0.9 on WordPress.

  • CVE-2022-3574CriNov 14, 2022
    risk 0.64cvss 9.8epss 0.01

    The WPForms Pro WordPress plugin before 1.7.7 does not validate its form data when generating the exported CSV, which could lead to CSV injection.

  • CVE-2022-3477CriNov 14, 2022
    risk 0.64cvss 9.8epss 0.04

    The tagDiv Composer WordPress plugin before 3.5, required by the Newspaper WordPress theme before 12.1 and Newsmag WordPress theme before 5.2.2, does not properly implement the Facebook login feature, allowing unauthenticated attackers to login as any user by just knowing their…

  • CVE-2022-3481CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.04

    The WooCommerce Dropshipping WordPress plugin before 4.4 does not properly sanitise and escape a parameter before using it in a SQL statement via a REST endpoint available to unauthenticated users, leading to a SQL injection

  • CVE-2022-3463CriNov 7, 2022
    risk 0.64cvss 9.8epss 0.01

    The Contact Form Plugin WordPress plugin before 4.3.13 does not validate and escape fields when exporting form entries as CSV, leading to a CSV injection

  • CVE-2022-3254CriOct 31, 2022
    risk 0.64cvss 9.8epss 0.05

    The WordPress Classifieds Plugin WordPress plugin before 4.3 does not properly sanitise and escape some parameters before using them in a SQL statement via an AJAX action available to unauthenticated users and when a specific premium module is active, leading to a SQL injection

  • CVE-2022-3393CriOct 25, 2022
    risk 0.64cvss 9.8epss 0.01

    The Post to CSV by BestWebSoft WordPress plugin through 1.4.0 does not properly escape fields when exporting data as CSV, leading to a CSV injection

  • CVE-2022-34858CriAug 22, 2022
    risk 0.64cvss 9.8epss 0.01

    Authentication Bypass vulnerability in miniOrange OAuth 2.0 client for SSO plugin <= 1.11.3 at WordPress.

  • CVE-2022-34149CriAug 22, 2022
    risk 0.64cvss 9.8epss 0.01

    Authentication Bypass vulnerability in miniOrange WP OAuth Server plugin <= 3.0.4 at WordPress.

  • CVE-2022-2180CriAug 15, 2022
    risk 0.64cvss 9.8epss 0.02

    The GREYD.SUITE WordPress theme does not properly validate uploaded custom font packages, and does not perform any authorization or csrf checks, allowing an unauthenticated attacker to upload arbitrary files including php source files, leading to possible remote code execution…

  • CVE-2022-2460CriAug 8, 2022
    risk 0.64cvss 9.8epss 0.01

    The WPDating WordPress plugin before 7.4.0 does not properly escape user input before concatenating it to certain SQL queries, leading to multiple SQL injection vulnerabilities exploitable by unauthenticated users

  • CVE-2022-2269CriAug 8, 2022
    risk 0.64cvss 9.8epss 0.01

    The Website File Changes Monitor WordPress plugin before 1.8.3 does not sanitise and escape user input before using it in a SQL statement via an action available to users with the manage_options capability (by default admins), leading to an SQL injection

  • CVE-2022-2317CriAug 1, 2022
    risk 0.64cvss 9.8epss 0.01

    The Simple Membership WordPress plugin before 4.1.3 allows user to change their membership at the registration stage due to insufficient checking of a user supplied parameter.

  • CVE-2022-1950CriAug 1, 2022
    risk 0.64cvss 9.8epss 0.04

    The Youzify WordPress plugin before 1.2.0 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to an unauthenticated SQL injection

  • CVE-2022-34487CriJul 21, 2022
    risk 0.64cvss 9.8epss 0.03

    Unauthenticated Arbitrary Option Update vulnerability in biplob018's Shortcode Addons plugin <= 3.0.2 at WordPress.

  • CVE-2022-33198CriJul 21, 2022
    risk 0.64cvss 9.8epss 0.03

    Unauthenticated WordPress Options Change vulnerability in Biplob Adhikari's Accordions plugin <= 2.0.2 at WordPress.

Page 26 of 664