Where
-Infinity
0

CodePeople Post Map for Google MapsCodePeople Post Map for Google Maps <= 1.2.6 - Authenticated (Contributor +) Stored Cross-Site Scripting via 'cpm_point' Post Meta

Risk 39
Severity
6.4
First published (updated )

CodePeople Contact Form EmailWordPress Contact Form Email plugin <= 1.3.63 - Broken Access Control vulnerability

Risk 38
Severity
6.5
First published (updated )

CodePeople CP Multi View Event CalendarWordPress CP Multi View Event Calendar plugin <= 1.4.36 - Cross Site Scripting (XSS) vulnerability

Risk 46
Severity
6.5
First published (updated )

CodePeople Calculated Fields FormWordPress Calculated Fields Form plugin <= 5.4.4.1 - Broken Access Control vulnerability

Risk 27
Severity
6.5
EPSS
0.03%
First published (updated )

CodePeople Sell DownloadsWordPress Sell Downloads plugin <= 1.1.12 - Broken Access Control vulnerability

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

CodePeople Appointment Booking CalendarWordPress Appointment Booking Calendar plugin <= 1.3.95 - Broken Access Control vulnerability

Risk 34
Severity
5.4
First published (updated )

CodePeople CP Multi View Event CalendarWordPress CP Multi View Event Calendar plugin <= 1.4.36 - Broken Access Control vulnerability

Risk 26
Severity
3.8
First published (updated )

CodePeople Booking Calendar Contact FormWordPress Booking Calendar Contact Form plugin <= 1.2.58 - Cross Site Scripting (XSS) Vulnerability

Risk 46
Severity
6.5
First published (updated )

CodePeople CP PollsWordPress CP Polls plugin <= 1.0.81 - Cross Site Scripting (XSS) vulnerability

Risk 40
Severity
5.9
First published (updated )

CodePeople WP Time Slots Booking FormWordPress WP Time Slots Booking Form plugin <= 1.2.30 - Cross Site Request Forgery (CSRF) Vulnerability

Risk 16
Severity
4.3
EPSS
0.02%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

CodePeople Calculated Fields FormWordPress Calculated Fields Form plugin <= 5.3.58 - Cross Site Request Forgery (CSRF) Vulnerability

Risk 56
Severity
8.8
EPSS
0.02%
First published (updated )

WordPress Polls CPPolls CP <= 1.0.75 - Admin+ Stored XSS via Custom Styles

Risk 34
Severity
5.4
First published (updated )

Polls CP WordPress pluginPolls CP <= 1.0.75 - Admin+ Stored Cross-Site Scripting

Risk 34
Severity
5.4
First published (updated )

Calculated Fields Form Calculated Fields FormCalculated Fields Form < 5.2.64 - Admin+ Stored XSS

Risk 29
Severity
4.8
First published (updated )

CodePeople Music Player for WooCommerceWordPress Music Player for WooCommerce plugin <= 1.5.1 - Broken Access Control Vulnerability

Risk 25
Severity
5.4
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Calculated Fields Form Calculated Fields FormCalculated Fields Form < 5.2.62 - Admin+ Stored XSS

Risk 29
Severity
4.8
First published (updated )

Calculated Fields Form Calculated Fields FormCalculated Fields Form < 5.2.62 - Admin+ Stored XSS

Risk 24
Severity
3.5
First published (updated )

CodePeople Appointment Booking CalendarWordPress Appointment Booking Calendar plugin <= 1.3.92 - Broken Access Control Vulnerability

Risk 61
Severity
9.8
EPSS
0.06%
First published (updated )

CodePeople Appointment Booking CalendarWordPress Appointment Booking Calendar plugin <= 1.3.92 - CSRF to SQL Injection vulnerability

Risk 56
Severity
8.8
EPSS
0.02%
First published (updated )

CodePeople Payment Form for PayPal ProWordPress Payment Form for PayPal Pro plugin <= 1.1.72 - Cross Site Scripting (XSS) Vulnerability

Risk 30
Severity
5.9
EPSS
0.03%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

CodePeople WordPress Music StoreWordPress Music Store – WordPress eCommerce Plugin <= 1.1.19 - Reflected Cross Site Scripting (XSS) vulnerability

Risk 28
Severity
7.1
EPSS
0.04%
First published (updated )

CodePeople Booking Calendar Contact FormWordPress Booking Calendar Contact Form Plugin <= 1.2.55 - Stored Cross Site Scripting (XSS) vulnerability

Risk 24
Severity
5.9
EPSS
0.04%
First published (updated )

CodePeople Contact Form Email WordpressWordPress Contact Form to Email Plugin <= 1.3.52 - Cross Site Scripting (XSS) vulnerability

Risk 22
Severity
5.9
EPSS
0.04%
First published (updated )

CodePeople Form Builder CP (cp-easy-form-builder)WordPress Form Builder CP Plugin <= 1.2.41 - SQL Injection vulnerability

Risk 34
Severity
8.5
EPSS
0.04%
First published (updated )

CodePeople Form Builder Cp WordpressForm Builder CP <= 1.2.41 - Authenticated (Contributor+) SQL Injection

Risk 38
Severity
6.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

CodePeople Appointment Booking Calendar WordpressBookingPress < 1.1.23 - Unauthenticated Export File Download

Risk 43
Severity
7.5
First published (updated )

CodePeople Appointment Hour BookingWordPress Appointment Hour Booking plugin <= 1.4.23 - Broken Access Control vulnerability

Risk 27
Severity
5.3
First published (updated )

Calculated Fields Form Calculated Fields FormCalculated Fields Form <= 5.2.63 - Denial of Service

Risk 28
Severity
5.3
First published (updated )

CodePeople CP Multi View Event CalendarWordPress Calendar Event Multi View plugin <= 1.4.13 - Broken Access Control vulnerability

Risk 26
Severity
3.8
First published (updated )

CodePeople WP Time Slots Booking FormWordPress WP Time Slots Booking Form plugin <= 1.1.82 - Broken Access Control vulnerability

Risk 66
Severity
7.2
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203