Filter
-Infinity
0

WordPressWordPress WP DPE-GES <= 1.6 - Cross Site Scripting (XSS) Vulnerability

EPSS
0.03%
First published (updated )

codemstory 워드프레스 결제 심플페이WordPress 워드프레스 결제 심플페이 <= 5.2.11 - Cross Site Request Forgery (CSRF) Vulnerability

EPSS
0.01%
First published (updated )

WordPressWordPress ProductX – Gutenberg WooCommerce Blocks Plugin <= 3.1.4 is vulnerable to PHP Object Injection

EPSS
0.04%
First published (updated )

WordPresslasTunes <= 3.6.1 - Settings Update via CSRF

First published (updated )

WordPressXSS

7.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

PasssterXSS

First published (updated )

Persian FontsPersian Fonts <= 1.6 - Admin+ Stored XSS

First published (updated )

BleepingComputerWordPress plugin disguised as a security tool injects backdoor

First published (updated )

Trân Minh-Quân WPVNWordPress WPVN <= 0.7.8 - Cross Site Request Forgery (CSRF) Vulnerability

EPSS
0.02%
First published (updated )

WordPress1 Decembrie 1918 <= 1.dec.2012 - Cross-Site Request Forgery to Stored Cross-Site Scripting

EPSS
0.03%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

BleepingComputerWooCommerce admins targeted by fake security patches that hijack sites

First published (updated )

WordPressPath Traversal

First published (updated )

Piraeus Bank WooCommerce Payment GatewaySQL Injection

First published (updated )

WordPressImproper authentication vulnerability in WordPress versions prior to 6.0.3 allows a remote unauthent…

First published (updated )

WordPressXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

WordPressXSS

First published (updated )

Debian LinuxSQL injection in WordPress

8.8
First published (updated )

Debian LinuxStored XSS in WordPress

First published (updated )

WordPressWordPress < 6.3.2 - Unauthenticated Post Author Email Disclosure

EPSS
66.56%
First published (updated )

Debian LinuxAuthenticated Object Injection in Multisites in WordPress

7.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

WP MultiTaskingWP MultiTasking <= 0.1.12 - Header/Footer/Body Script Update via CSRF

First published (updated )

WP MultiTaskingWP MultiTasking <= 0.1.12 - Permalink Suffix Update via CSRF

First published (updated )

Wpify Woo Czech WordpressThe WPify Woo Czech plugin for WordPress is vulnerable to unauthorized access of data due to a missi…

First published (updated )

Aklamator INfeedaklamator-infeed <= 2.0.0 - Admin+ Stored XSS

First published (updated )

WordPressWP <= 6.1.1 - Unauthenticated Blind SSRF via DNS Rebinding

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Oracle Data IntegratorSQL Injection

First published (updated )

Debian LinuxXSS

First published (updated )

Debian LinuxInfoleak

First published (updated )

WordPressCSRF

8.8
First published (updated )

WordPressXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203