Where
-Infinity
0

Premio My Sticky ElementsWordPress My Sticky Elements plugin <= 2.3.3 - Broken Access Control vulnerability

Risk 22
Severity
4.3
First published (updated )

Gal Dubinski Stars TestimonialsWordPress Stars Testimonials plugin <= 3.3.4 - Cross Site Scripting (XSS) vulnerability

Risk 46
Severity
6.5
First published (updated )

My Sticky Bar My Sticky BarMy Sticky Bar < 2.6.8 - Admin+ Stored XSS

Risk 29
Severity
4.8
First published (updated )

Premio Floating Chat Widget WordpressFloating Chat Widget: Contact Chat Icons, Telegram Chat, Line Messenger, WeChat, Email, SMS, Call Button, WhatsApp – Chaty <= 3.3.5 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting

Risk 39
Severity
6.4
First published (updated )

Premio My Sticky Bar WordpressMy Sticky Bar < 2.7.3 - Admin+ Stored XSS

Risk 22
Severity
4.8
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Premio Folders WordpressFolders – Unlimited Folders to Organize Media Library Folder, Pages, Posts, File Manager <= 3.0.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via SVG File Upload

Risk 28
Severity
6.4
EPSS
0.07%
First published (updated )

My Sticky Bar My Sticky BarMy Sticky Bar < 2.7.2 - Admin+ Stored XSS

Risk 29
Severity
4.8
First published (updated )

Premio Floating Chat Widget WordpressFloating Chat Widget < 3.2.3 - Admin+ Stored XSS

Risk 38
Severity
6.1
First published (updated )

WordPress Floating Chat WidgetFloating Chat Widget < 3.1.9 - Editor+ Stored XSS

Risk 26
Severity
3.8
First published (updated )

Premio My Sticky Bar WordpressMy Sticky Bar <= 2.6.6 - Cross-Site Request Forgery to Sensitive Information Exposure

Risk 16
Severity
4.3
EPSS
0.05%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Premio Folders WordpressWordPress Folders Plugin <= 2.9.2 is vulnerable to Arbitrary File Upload

Risk 72
Severity
9.1
First published (updated )

Premio Chaty WordpressWordPress Chaty plugin <= 3.1.2 - Cross Site Scripting (XSS) vulnerability

Risk 29
Severity
5.9
First published (updated )

Premio Mystickymenu WordpressmyStickymenu < 2.6.5 - Subscriber+ Arbitrary Form Leads Deletion

Risk 25
Severity
5.4
EPSS
0.05%
First published (updated )

Premio Chaty WordpressWordPress Chaty Plugin <= 3.0.9 is vulnerable to Cross Site Scripting (XSS)

Risk 50
Severity
7.1
First published (updated )

Premio My Sticky Elements WordpressAll-in-one Floating Contact Form < 2.1.2 - Admin+ Stored Cross-Site Scripting

Risk 29
Severity
4.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Premio Chaty WordpressFloating Chat Widget < 3.1.2 - Admin+ Stored Cross-Site Scripting

Risk 29
Severity
4.8
First published (updated )

Premio My Sticky Elements WordpressMy Sticky Elements < 2.0.9 - Admin+ SQLi

Risk 66
Severity
7.2
First published (updated )

Premio Chaty WordpressChaty < 3.0.3 - Admin+ SQLi

Risk 66
Severity
7.2
First published (updated )

Premio Chaty WordpressWordPress Chaty plugin <= 2.8.3 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability

Risk 29
Severity
4.8
First published (updated )

Premio Mystickyelements WordpressAll-in-one Floating Contact Form < 2.0.4 - Authenticated Reflected Cross-Site Scripting (XSS)

Risk 34
Severity
5.4
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Premio Chaty WordpressChaty < 2.8.3 - Reflected Cross-Site Scripting

Risk 38
Severity
6.1
First published (updated )

Premio Mystickymenu WordpressmyStickymenu < 2.5.2 - Authenticated Stored XSS

Risk 29
Severity
4.8
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203