VYPR

Vendor CVEs

WordPress

All CVEs

33,189 total · sorted by risk
  • CVE-2022-1057CriJul 11, 2022
    risk 0.64cvss 9.8epss 0.08

    The Pricing Deals for WooCommerce WordPress plugin through 2.0.2.02 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to an unauthenticated SQL injection

  • CVE-2013-4144CriJun 30, 2022
    risk 0.64cvss 9.8epss 0.01

    There is an object injection vulnerability in swfupload plugin for wordpress.

  • CVE-2022-0885CriJun 13, 2022
    risk 0.64cvss 9.8epss 0.09

    The Member Hero WordPress plugin through 1.0.9 lacks authorization checks, and does not validate the a request parameter in an AJAX action, allowing unauthenticated users to call arbitrary PHP functions with no arguments.

  • CVE-2022-0827CriJun 13, 2022
    risk 0.64cvss 9.8epss 0.09

    The Bestbooks WordPress plugin through 2.6.3 does not sanitise and escape some parameters before using them in a SQL statement via an AJAX action, leading to an SQL Injection exploitable by unauthenticated users

  • CVE-2022-0788CriJun 8, 2022
    risk 0.64cvss 9.8epss 0.08

    The WP Fundraising Donation and Crowdfunding Platform WordPress plugin before 1.5.0 does not sanitise and escape a parameter before using it in a SQL statement via one of it's REST route, leading to an SQL injection exploitable by unauthenticated users

  • CVE-2022-1014CriMay 23, 2022
    risk 0.64cvss 9.8epss 0.02

    The WP Contacts Manager WordPress plugin through 2.2.4 fails to properly sanitize user supplied POST data before it is being interpolated in an SQL statement and then executed, leading to an SQL injection vulnerability.

  • CVE-2022-1505CriMay 10, 2022
    risk 0.64cvss 9.8epss 0.02

    The RSVPMaker plugin for WordPress is vulnerable to unauthenticated SQL Injection due to missing SQL escaping and parameterization on user supplied data passed to a SQL query in the rsvpmaker-api-endpoints.php file. This makes it possible for unauthenticated attackers to steal…

  • CVE-2022-1013CriMay 9, 2022
    risk 0.64cvss 9.8epss 0.08

    The Personal Dictionary WordPress plugin before 1.3.4 fails to properly sanitize user supplied POST data before it is being interpolated in an SQL statement and then executed, leading to a blind SQL injection vulnerability.

  • CVE-2022-0948CriMay 9, 2022
    risk 0.64cvss 9.8epss 0.10

    The Order Listener for WooCommerce WordPress plugin before 3.2.2 does not sanitise and escape the id parameter before using it in a SQL statement via a REST route available to unauthenticated users, leading to an SQL injection

  • CVE-2022-0836CriMay 9, 2022
    risk 0.64cvss 9.8epss 0.02

    The SEMA API WordPress plugin before 4.02 does not properly sanitise and escape some parameters before using them in SQL statements via an AJAX action, leading to SQL Injections exploitable by unauthenticated users

  • CVE-2022-0826CriMay 9, 2022
    risk 0.64cvss 9.8epss 0.09

    The WP Video Gallery WordPress plugin through 1.7.1 does not sanitise and escape a parameter before using it in a SQL statement via an AJAX action, leading to an SQL Injection exploitable by unauthenticated users

  • CVE-2022-0814CriMay 9, 2022
    risk 0.64cvss 9.8epss 0.10

    The Ubigeo de Perú para Woocommerce WordPress plugin before 3.6.4 does not properly sanitise and escape some parameters before using them in SQL statements via various AJAX actions, some of which are available to unauthenticated users, leading to SQL Injections

  • CVE-2022-0592CriMay 9, 2022
    risk 0.64cvss 9.8epss 0.10

    The MapSVG WordPress plugin before 6.2.20 does not validate and escape a parameter via a REST endpoint before using it in a SQL statement, leading to a SQL Injection exploitable by unauthenticated users.

  • CVE-2022-0783CriMay 2, 2022
    risk 0.64cvss 9.8epss 0.08

    The Multiple Shipping Address Woocommerce WordPress plugin before 2.0 does not properly sanitise and escape numerous parameters before using them in SQL statements via some AJAX actions available to unauthenticated users, leading to unauthenticated SQL injections

  • CVE-2022-0771CriMay 2, 2022
    risk 0.64cvss 9.8epss 0.02

    The SiteSuperCharger WordPress plugin before 5.2.0 does not validate, sanitise and escape various user inputs before using them in SQL statements via AJAX actions (available to both unauthenticated and authenticated users), leading to Unauthenticated SQL Injections

  • CVE-2022-0782CriApr 25, 2022
    risk 0.64cvss 9.8epss 0.02

    The Donations WordPress plugin through 1.8 does not sanitise and escape the nd_donations_id parameter before using it in a SQL statement via the nd_donations_single_cause_form_validate_fields_php_function AJAX action (available to unauthenticated users), leading to an…

  • CVE-2022-0769CriApr 25, 2022
    risk 0.64cvss 9.8epss 0.09

    The Users Ultra WordPress plugin through 3.1.0 fails to properly sanitize and escape the data_target parameter before it is being interpolated in an SQL statement and then executed via the rating_vote AJAX action (available to both unauthenticated and authenticated users),…

  • CVE-2022-0693CriApr 25, 2022
    risk 0.64cvss 9.8epss 0.07

    The Master Elements WordPress plugin through 8.0 does not validate and escape the meta_ids parameter of its remove_post_meta_condition AJAX action (available to both unauthenticated and authenticated users) before using it in a SQL statement, leading to an unauthenticated SQL…

  • CVE-2022-0657CriApr 25, 2022
    risk 0.64cvss 9.8epss 0.02

    The 5 Stars Rating Funnel WordPress Plugin | RRatingg WordPress plugin before 1.2.54 does not properly sanitise, validate and escape lead ids before using them in a SQL statement via the rrtngg_delete_leads AJAX action, available to unauthenticated users, leading to an…

  • CVE-2022-0541CriApr 25, 2022
    risk 0.64cvss 9.8epss 0.02

    The flo-launch WordPress plugin before 2.4.1 injects code into wp-config.php when creating a cloned site, allowing any attacker to initiate a new site install by setting the flo_custom_table_prefix cookie to an arbitrary value.

  • CVE-2022-27862CriApr 19, 2022
    risk 0.64cvss 9.8epss 0.02

    Arbitrary File Upload leading to RCE in E4J s.r.l. VikBooking Hotel Booking Engine & PMS plugin <= 1.5.3 on WordPress allows attackers to upload and execute dangerous file types (e.g. PHP shell) via the signature upload on the booking form.

  • CVE-2022-0992CriApr 19, 2022
    risk 0.64cvss 9.8epss 0.03

    The SiteGround Security plugin for WordPress is vulnerable to authentication bypass that allows unauthenticated users to log in as administrative users due to missing identity verification on initial 2FA set-up that allows unauthenticated and unauthorized users to configure 2FA…

  • CVE-2022-0785CriApr 18, 2022
    risk 0.64cvss 9.8epss 0.09

    The Daily Prayer Time WordPress plugin before 2022.03.01 does not sanitise and escape the month parameter before using it in a SQL statement via the get_monthly_timetable AJAX action (available to unauthenticated users), leading to an unauthenticated SQL injection

  • CVE-2022-0142CriApr 12, 2022
    risk 0.64cvss 9.8epss 0.03

    The Visual Form Builder WordPress plugin before 3.0.8 is vulnerable to CSV injection allowing a user with low level or no privileges to inject a command that will be included in the exported CSV file, leading to possible code execution.

  • CVE-2022-0949CriApr 11, 2022
    risk 0.64cvss 9.8epss 0.08

    The Block Bad Bots and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection WordPress plugin before 6.930 does not properly sanitise and escape the fingerprint parameter before using it in a SQL statement via the stopbadbots_grava_fingerprint AJAX action, available to…

  • CVE-2022-0846CriMar 28, 2022
    risk 0.64cvss 9.8epss 0.09

    The SpeakOut! Email Petitions WordPress plugin before 2.14.15.1 does not sanitise and escape the id parameter before using it in a SQL statement via the dk_speakout_sendmail AJAX action, leading to an SQL Injection exploitable by unauthenticated users

  • CVE-2022-0787CriMar 28, 2022
    risk 0.64cvss 9.8epss 0.09

    The Limit Login Attempts (Spam Protection) WordPress plugin before 5.1 does not sanitise and escape some parameters before using them in SQL statements via AJAX actions (available to unauthenticated users), leading to SQL Injections

  • CVE-2021-25070CriMar 28, 2022
    risk 0.64cvss 9.8epss 0.02

    The Block Bad Bots WordPress plugin before 6.88 does not properly sanitise and escape the User Agent before using it in a SQL statement to record logs, leading to an SQL Injection issue

  • CVE-2022-0694CriMar 21, 2022
    risk 0.64cvss 9.8epss 0.02

    The Advanced Booking Calendar WordPress plugin before 1.7.0 does not validate and escape the calendar parameter before using it in a SQL statement via the abc_booking_getSingleCalendar AJAX action (available to both unauthenticated and authenticated users), leading to an…

  • CVE-2022-0658CriMar 14, 2022
    risk 0.64cvss 9.8epss 0.09

    The CommonsBooking WordPress plugin before 2.6.8 does not sanitise and escape the location parameter of the calendar_data AJAX action (available to unauthenticated users) before it is used in dynamically constructed SQL queries, leading to an unauthenticated SQL injection

  • CVE-2021-25007CriMar 14, 2022
    risk 0.64cvss 9.8epss 0.02

    The MOLIE WordPress plugin through 0.5 does not validate and escape a post parameter before using in a SQL statement, leading to an SQL Injection

  • CVE-2022-24664CriFeb 16, 2022
    risk 0.64cvss 9.9epss 0.02

    PHP Everywhere <= 2.0.3 included functionality that allowed execution of PHP Code Snippets via WordPress metaboxes, which could be used by any user able to edit posts.

  • CVE-2022-0320CriFeb 1, 2022
    risk 0.64cvss 9.8epss 0.02

    The Essential Addons for Elementor WordPress plugin before 5.0.5 does not validate and sanitise some template data before it them in include statements, which could allow unauthenticated attackers to perform Local File Inclusion attack and read arbitrary files on the server,…

  • CVE-2021-25032CriJan 10, 2022
    risk 0.64cvss 9.8epss 0.07

    The PublishPress Capabilities WordPress plugin before 2.3.1, PublishPress Capabilities Pro WordPress plugin before 2.3.1 does not have authorisation and CSRF checks when updating the plugin's settings via the init hook, and does not ensure that the options to be updated belong…

  • CVE-2021-24949CriJan 10, 2022
    risk 0.64cvss 9.8epss 0.02

    The "WP Search Filters" widget of The Plus Addons for Elementor - Pro WordPress plugin before 5.0.7 does not sanitise and escape the option parameter before using it in a SQL statement, which could lead to SQL injection

  • CVE-2021-24849CriDec 21, 2021
    risk 0.64cvss 9.8epss 0.08

    The wcfm_ajax_controller AJAX action of the WCFM Marketplace WordPress plugin before 3.4.12, available to unauthenticated and authenticated user, does not properly sanitise multiple parameters before using them in SQL statements, leading to SQL injections

  • CVE-2021-36888CriDec 15, 2021
    risk 0.64cvss 9.8epss 0.07

    Unauthenticated Arbitrary Options Update vulnerability leading to full website compromise discovered in Image Hover Effects Ultimate (versions <= 9.6.1) WordPress plugin.

  • CVE-2021-4073CriDec 14, 2021
    risk 0.64cvss 9.8epss 0.07

    The RegistrationMagic WordPress plugin made it possible for unauthenticated users to log in as any site user, including administrators, if they knew a valid username on the site due to missing identity validation in the social login function social_login_using_email() of the…

  • CVE-2021-24951CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.02

    The LearnPress WordPress plugin before 4.1.4 does not sanitise, validate and escape the id parameter before using it in SQL statements when duplicating course/lesson/quiz/question, leading to SQL Injections issues

  • CVE-2021-24863CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.02

    The WP Block and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection Plugin StopBadBots WordPress plugin before 6.67 does not sanitise and escape the User Agent before using it in a SQL statement to save it, leading to a SQL injection

  • CVE-2021-24857CriDec 13, 2021
    risk 0.64cvss 9.8epss 0.02

    The ToTop Link WordPress plugin through 1.7.1 passes base64 encoded user input to the unserialize() PHP function, which could lead to PHP Object injection if a plugin installed on the blog has a suitable gadget chain.

  • CVE-2021-24943CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.07

    The Registrations for the Events Calendar WordPress plugin before 2.7.6 does not sanitise and escape the event_id in the rtec_send_unregister_link AJAX action (available to both unauthenticated and authenticated users) before using it in a SQL statement, leading to an…

  • CVE-2021-24866CriDec 6, 2021
    risk 0.64cvss 9.8epss 0.02

    The WP Data Access WordPress plugin before 5.0.0 does not properly sanitise and escape the backup_date parameter before using it a SQL statement, leading to a SQL injection issue and could allow arbitrary table deletion

  • CVE-2021-24731CriNov 8, 2021
    risk 0.64cvss 9.8epss 0.07

    The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin before 3.7.1.6 does not properly escape user data before using it in a SQL statement in the wp-json/pie/v1/login REST API endpoint, leading to an…

  • CVE-2021-36879CriSep 27, 2021
    risk 0.64cvss 9.8epss 0.02

    Unauthenticated Privilege Escalation vulnerability in WordPress uListing plugin (versions <= 2.0.5). Possible if WordPress configuration allows user registration.

  • CVE-2021-24741CriSep 20, 2021
    risk 0.64cvss 9.8epss 0.06

    The Support Board WordPress plugin before 3.3.4 does not escape multiple POST parameters (such as status_code, department, user_id, conversation_id, conversation_status_code, and recipient_id) before using them in SQL statements, leading to SQL injections which are exploitable…

  • CVE-2021-24493CriSep 13, 2021
    risk 0.64cvss 9.8epss 0.02

    The shopp_upload_file AJAX action of the Shopp WordPress plugin through 1.4, available to both unauthenticated and authenticated user does not have any security measure in place to prevent upload of malicious files, such as PHP, allowing unauthenticated users to upload arbitrary…

  • CVE-2021-24551CriAug 23, 2021
    risk 0.64cvss 9.8epss 0.02

    The Edit Comments WordPress plugin through 0.3 does not sanitise, validate or escape the jal_edit_comments GET parameter before using it in a SQL statement, leading to a SQL injection issue

  • CVE-2021-37597CriAug 19, 2021
    risk 0.64cvss 9.8epss 0.02

    WP Cerber before 8.9.3 allows MFA bypass via wordpress_logged_in_[hash] manipulation.

  • CVE-2021-24527CriAug 16, 2021
    risk 0.64cvss 9.8epss 0.08

    The User Registration & User Profile – Profile Builder WordPress plugin before 3.4.9 has a bug allowing any user to reset the password of the admin of the blog, and gain unauthorised access, due to a bypass in the way the reset key is checked. Furthermore, the admin will not…

Page 27 of 664