VYPR

Vendor CVEs

WordPress

All CVEs

36,888 total · sorted by risk
  • CVE-2026-14482HigJul 8, 2026
    risk 0.00cvss 8.8epss 0.01

    The 多说社会化评论框 plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.2. The vulnerability exists due to a missing capability and nonce check on a directly web-accessible API endpoint, combined with a trivially forgeable…

  • CVE-2026-14244HigJul 8, 2026
    risk 0.00cvss 7.5epss 0.01

    The Jssor Slider by jssor.com plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 3.1.24 via the 'url' parameter parameter. This makes it possible for unauthenticated attackers to read the contents of arbitrary files on the server,…

  • CVE-2026-14158HigJul 8, 2026
    risk 0.00cvss 8.8epss 0.01

    The Widget Logic Visual plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.52 via the widget_logic_visual_check_visibility function. This is due to missing capability check and nonce verification on the…

  • CVE-2026-6101HigJul 7, 2026
    risk 0.00cvss 7.5epss 0.01

    The AMP for WP – Accelerated Mobile Pages plugin for WordPress is vulnerable to Arbitrary File Write in versions up to and including 1.1.12. This is due to unsafe ZIP file extraction in the ampforwp_save_local_font() function combined with inadequate cleanup that fails to…

  • CVE-2026-4375CriJul 7, 2026
    risk 0.00cvss 9.0epss 0.00

    The DoLeads Integrator WordPress plugin through 0.65, wp2epub WordPress plugin through 0.65 have been seen to be used to achieve RCE, once they are added adding to a blog, for example using a vulnerability where unclosed extensions from wordpress.org can be installed by…

  • CVE-2026-12375CriJul 7, 2026
    risk 0.00cvss 9.8epss 0.01

    The uncanny-automator-pro WordPress plugin before 7.3.0.6 was distributed with malicious code after the vendor's uncanny-automator-pro WordPress plugin before 7.3.0.6 update/distribution infrastructure was compromised; the injected backdoor grants unauthenticated attackers an…

  • CVE-2026-12277HigJul 7, 2026
    risk 0.00cvss 8.7epss 0.00

    The Frontend File Manager Plugin WordPress plugin through 23.6 does not validate a file path derived from user input before deleting the referenced file, allowing unauthenticated users to delete arbitrary files on the server (such as wp-config.php) when guest upload mode is…

  • CVE-2026-10834MedJul 7, 2026
    risk 0.00cvss 4.6epss 0.00

    The WP Travel Engine WordPress plugin before 6.8.1 does not properly validate the source of a user-supplied profile image path before moving the file, allowing authenticated users with subscriber-level access and above to relocate arbitrary files within the WordPress uploads…

  • CVE-2026-11328MedJul 7, 2026
    risk 0.00cvss 6.4epss 0.00

    The Exclusive Addons for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the post title parameter in all versions up to, and including, 2.7.9.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated…

  • CVE-2026-12154MedJul 6, 2026
    risk 0.00cvss 6.4epss 0.00

    The Reviews Widgets for Google, Yelp & TripAdvisor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'page_id' shortcode attribute of the [fbrev] shortcode in versions up to and including 2.7.3. This is due to insufficient input sanitization and output…

  • CVE-2025-53831HigJul 6, 2026
    risk 0.00cvss 8.2epss 0.00

    DrawIO for ownCloud is an application for using DrawIO with the file storage, synchronization, and sharing application ownCloud Classic. In DrawIO for ownCloud prior to version 1.0.2, which corresponds to ownCloud 10 prior to version 10.15.3, attackers with access to the DrawIO…

  • CVE-2026-6382CriJul 6, 2026
    risk 0.00cvss 9.1epss 0.01

    The FileOrganizer WordPress plugin before 1.1.9, Advanced File Manager WordPress plugin before 5.4.12, File Manager Pro WordPress plugin before 2.1.1, File Manager WordPress plugin before 8.0.4 do not properly escape a parameter before passing it to a shell command when…

  • CVE-2026-12083HigJul 6, 2026
    risk 0.00cvss 8.1epss 0.00

    The Admin and Site Enhancements (ASE) WordPress plugin before 8.8.4, admin-site-enhancements-pro WordPress plugin before 8.8.4 does not perform authentication, authorization, or nonce checks on a role-restoration request handler, allowing unauthenticated attackers to restore a…

  • CVE-2026-11962HigJul 6, 2026
    risk 0.00cvss 8.8epss 0.01

    The FileOrganizer WordPress plugin before 1.2.0 does not validate the file type on several of its file-management operations, allowing authenticated users who have been granted file-manager access — which its premium add-on can extend to sub-administrator roles — to upload…

  • CVE-2026-11855HigJul 6, 2026
    risk 0.00cvss 8.8epss 0.01

    The Simple Membership WordPress plugin before 4.7.5 does not verify the authenticity of Stripe webhook requests when no signing secret is configured, nor escape a value taken from them before outputting it in an administrator notice, allowing unauthenticated attackers to inject…

  • CVE-2026-11766HigJul 6, 2026
    risk 0.00cvss 8.0epss 0.00

    The Ultimate Member WordPress plugin before 2.12.0 does not properly sanitise and escape the value of custom textarea profile fields before outputting it on user profiles, allowing authenticated users with Subscriber-level access and above to store JavaScript that executes when…

  • CVE-2026-10830HigJul 6, 2026
    risk 0.00cvss 8.8epss 0.00

    The AllCoach WordPress plugin before 1.0.2 does not verify that an email address submitted to a public account-registration endpoint is not already associated with an existing user before overwriting that user's password, allowing unauthenticated attackers to reset the password…

  • CVE-2024-6228HigJul 6, 2026
    risk 0.00cvss 7.5epss 0.00

    The Notifications for Forms & WordPress Actions WordPress plugin before 2.6 does not validate a user-supplied value before using it to build a server-side file inclusion path, allowing authenticated users with subscriber-level access and above to include and execute arbitrary…

  • CVE-2026-59520MedJul 5, 2026
    risk 0.00cvss 4.3epss 0.00

    Cross-Site Request Forgery (CSRF) vulnerability in properfraction CrawlWP SEO allows Cross Site Request Forgery. This issue affects CrawlWP SEO: from n/a through 3.0.16.

  • CVE-2026-59519MedJul 5, 2026
    risk 0.00cvss 5.3epss 0.00

    Insertion of Sensitive Information Into Sent Data vulnerability in Softaculous FormLayer allows Retrieve Embedded Sensitive Data. This issue affects FormLayer: from n/a through 1.0.6.

  • CVE-2026-59511MedJul 5, 2026
    risk 0.00cvss 5.3epss 0.00

    Insertion of Sensitive Information Into Sent Data vulnerability in Tim Strifler Exclusive Addons Elementor allows Retrieve Embedded Sensitive Data. This issue affects Exclusive Addons Elementor: from n/a through 2.7.9.9.

  • CVE-2026-5137MedJul 3, 2026
    risk 0.00cvss 4.3epss 0.00

    The RTMKit (rometheme-for-elementor) plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.0.7 This is due to insufficient path validation on the 'template' parameter in the render_templates AJAX endpoint, which is used directly in a…

  • CVE-2026-9756MedJul 3, 2026
    risk 0.00cvss 6.4epss 0.00

    The GenerateBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Headline Block 'linkMetaFieldType' Dynamic Link Attribute in all versions up to, and including, 2.2.1 due to insufficient input sanitization and output escaping. This makes it possible for…

  • CVE-2026-4804MedJul 3, 2026
    risk 0.00cvss 6.4epss 0.00

    The Zakra theme for WordPress is vulnerable to Stored Cross-Site Scripting via post meta values in all versions up to, and including, 4.2.0. This is due to the theme registering three post meta fields (zakra_menu_item_color, zakra_menu_item_hover_color, and…

  • CVE-2026-11900MedJul 3, 2026
    risk 0.00cvss 4.3epss 0.00

    The Ad Inserter – Ad Manager & AdSense Ads plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to and including 2.8.16 via the 'data' attribute of the [adinserter] shortcode. This is due to the replace_ai_tags() function processing a…

  • CVE-2026-11778MedJul 3, 2026
    risk 0.00cvss 5.4epss 0.00

    The The CURCY – Multi Currency for WooCommerce – Smoothly on WooCommerce 9.x plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 2.2.14. This is due to the software allowing users to execute an action that does not…

  • CVE-2026-11398MedJul 3, 2026
    risk 0.00cvss 5.3epss 0.01

    The LatePoint – Calendar Booking Plugin for Appointments and Events plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 5.6.1. This is due to the plugin not properly verifying that a user is authorized to perform an action. This…

  • CVE-2026-9230MedJul 3, 2026
    risk 0.00cvss 4.3epss 0.00

    The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 11.1.4. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it…

  • CVE-2026-9148HigJul 3, 2026
    risk 0.00cvss 7.2epss 0.01

    The Comments – wpDiscuz plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the guest commenter 'Website' field in versions up to, and including, 7.6.56 This is due to insufficient output escaping in the getCommentAuthor() function, which interpolates the…

  • CVE-2026-8351MedJul 3, 2026
    risk 0.00cvss 6.4epss 0.00

    The RTMKit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Advanced Heading widget's 'Background Text' parameter in versions up to, and including, 2.0.7 This is due to insufficient output escaping on the 'background_text_heading' setting in the render()…

  • CVE-2026-9725CriJul 3, 2026
    risk 0.00cvss 9.1epss 0.01

    The Printcart Web to Print Product Designer for WooCommerce plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to, and including, 2.5.2 This is due to insufficient path validation in the store_design_data() function, which constructs a filesystem path…

  • CVE-2026-9626MedJul 3, 2026
    risk 0.00cvss 6.4epss 0.00

    The JSON API User plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'content' parameter of the post_comment API endpoint in versions up to, and including, 4.1.0 This is due to insufficient input sanitization in the post_comment() function, which passes…

  • CVE-2026-9180MedJul 3, 2026
    risk 0.00cvss 5.3epss 0.01

    The MotoPress Appointment Booking plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key in all versions up to, and including, 2.4.4. This is due to the `POST /motopress/appointment/v1/bookings` REST endpoint being registered with…

  • CVE-2026-8892MedJul 3, 2026
    risk 0.00cvss 6.4epss 0.00

    The CM Business Directory – Optimise and showcase local business plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Business Address Meta Fields in all versions up to, and including, 1.5.7 due to insufficient input sanitization and output escaping. This…

  • CVE-2026-8489MedJul 3, 2026
    risk 0.00cvss 6.4epss 0.00

    The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'about_me' parameter in all versions up to, and including, 2.11.4 due to insufficient…

  • CVE-2026-13040HigJul 3, 2026
    risk 0.00cvss 7.2epss 0.01

    The NEX-Forms – Ultimate Forms Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'real_val__' parameter in all versions up to, and including, 9.2.2 due to insufficient input sanitization and output escaping. This makes it possible…

  • CVE-2026-12557MedJul 3, 2026
    risk 0.00cvss 5.3epss 0.00

    The Ninja Forms - File Uploads plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.3.29. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated…

  • CVE-2026-11397MedJul 3, 2026
    risk 0.00cvss 5.5epss 0.00

    The WP Import Export Lite plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to and including 3.9.30 via the wpie_import_upload_file_from_url AJAX action. The plugin's URL downloader first calls wp_safe_remote_get() (which correctly blocks…

  • CVE-2026-14327HigJul 3, 2026
    risk 0.00cvss 7.5epss 0.01

    The AR for WordPress plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 8.40 via the 'file' parameter parameter. This makes it possible for unauthenticated attackers to read the contents of arbitrary files on the server, which can…

  • CVE-2026-12920MedJul 3, 2026
    risk 0.00cvss 4.9epss 0.00

    The Cookie Banner for GDPR / CCPA – WPLP Cookie Consent plugin for WordPress is vulnerable to generic SQL Injection via the 's' parameter in all versions up to, and including, 4.3.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation…

  • CVE-2026-12734MedJul 3, 2026
    risk 0.00cvss 6.4epss 0.00

    The weDocs: AI Powered Knowledge Base, Docs, Documentation, Wiki & AI Chatbot plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'connectorWidth' Block Attribute in all versions up to, and including, 2.3.0 due to insufficient input sanitization and output…

  • CVE-2026-12731MedJul 3, 2026
    risk 0.00cvss 6.4epss 0.00

    The weDocs: AI Powered Knowledge Base, Docs, Documentation, Wiki & AI Chatbot plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'sectionTitleTag' and 'articleTitleTag' Block Attributes in all versions up to, and including, 2.3.0 due to insufficient input…

  • CVE-2026-12729MedJul 3, 2026
    risk 0.00cvss 4.3epss 0.00

    The weDocs: AI Powered Knowledge Base, Docs, Documentation, Wiki & AI Chatbot plugin for WordPress is vulnerable to Missing Authorization in versions up to and including 2.3.0. This is due to a missing capability check on the do_migration() function registered as the…

  • CVE-2026-7311HigJul 2, 2026
    risk 0.00cvss 8.1epss 0.01

    The TinyPNG – JPEG, PNG & WebP image compression plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the delete_converted_image_size function in all versions up to, and including, 3.6.13. This makes it possible for…

  • CVE-2026-5524CriJul 2, 2026
    risk 0.00cvss 9.8epss 0.01

    The Divi Form Builder plugin for WordPress is vulnerable to Arbitrary File Upload leading to Remote Code Execution in all versions up to and including 5.1.8. This is due to insufficient file extension validation in the do_image_upload() function where user-supplied input from…

  • CVE-2026-57766HigJul 2, 2026
    risk 0.00cvss 8.8epss 0.00

    Unauthenticated Cross Site Request Forgery (CSRF) in WPIDE – File Manager & Code Editor <= 3.5.6 versions.

  • CVE-2026-57765HigJul 2, 2026
    risk 0.00cvss 8.5epss 0.00

    Contributor SQL Injection in WP EasyCart <= 5.9.0 versions.

  • CVE-2026-57764MedJul 2, 2026
    risk 0.00cvss 6.5epss 0.00

    Contributor Cross Site Scripting (XSS) in Surbma | Yoast SEO Breadcrumb Shortcode <= 1.2 versions.

  • CVE-2026-57763MedJul 2, 2026
    risk 0.00cvss 6.5epss 0.00

    Contributor Cross Site Scripting (XSS) in Structured Content <= 1.7.0 versions.

  • CVE-2026-57762MedJul 2, 2026
    risk 0.00cvss 5.9epss 0.00

    Author Cross Site Scripting (XSS) in Simple URLs <= 151 versions.

Page 715 of 738