Filter

Easy Digital DownloadsWordPress Easy Digital Downloads – Recent Purchases plugin <= 1.0.2 - Remote File Inclusion vulnerability

First published (updated )

Wow-company Viral Signup WordpressViral Signup <= 2.1 - Unauthenticated SQLi

EPSS
0.05%
First published (updated )

Wow-company Floating ButtonWordPress Floating Button Plugin <= 6.0 is vulnerable to Cross Site Request Forgery (CSRF)

8.8
First published (updated )

Wow-company Modal WindowModal Window < 5.2.2 - RFI leading to RCE via CSRF

8.8
First published (updated )

Wow-Company WP CoderWP Coder < 2.5.2 - RFI leading to RCE via CSRF

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wow-company Button GeneratorButton Generator < 2.3.3 - RFI leading to RCE via CSRF

8.8
First published (updated )

Wow-company WpcalcWPcalc <= 2.1 - Authenticated SQL Injection

8.8
First published (updated )

Wow-Company Counter BoxCounter Box < 1.2.1 - Arbitrary Counter Activation/Deactivation via CSRF

8.8
First published (updated )

Wow-Company Side Menu LiteWordPress Side Menu Lite Plugin <= 4.0 is vulnerable to Cross Site Request Forgery (CSRF)

8.8
First published (updated )

Wow-company Button GeneratorWordPress Button Generator – easily Button Builder Plugin <= 2.3.8 is vulnerable to Cross Site Request Forgery (CSRF)

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wow-company Wow FormsWow Forms <= 3.1.3 - Admin+ SQL Injection

7.2
First published (updated )

Wow-company Wow CountdownsWow Countdowns <= 3.1.2 - Admin+ SQLi

7.2
First published (updated )

Wow-company Hover EffectsWordPress Hover Effects plugin <= 2.1 - Authenticated Local File Inclusion (LFI) vulnerability

7.2
First published (updated )

Wow-Company Counter BoxWordPress Counter Box plugin <= 1.1.1 - Authenticated Local File Inclusion (LFI) vulnerability

7.2
First published (updated )

Wow-Company WP CoderSQL Injection

7.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wow-Company WP CoderWordPress WP Coder Plugin <= 3.6 - CSRF to Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

Wow-company Modal WindowWordPress Modal Window – create popup modal window plugin <= 6.0.3 - Cross Site Scripting (XSS) vulnerability

First published (updated )

Wow-company Button GeneratorWordPress Button Generator – easily Button Builder Plugin <= 2.3.5 is vulnerable to Cross Site Request Forgery (CSRF)

First published (updated )

Wow-Company WP CoderWP Coder < 2.5.3 - Code Deletion via CSRF

First published (updated )

Wow-company Modal WindowXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wow-Company Bubble MenuMultiple Plugins from Wow-Company - Reflected XSS

First published (updated )

Wow-Company Counter BoxWordPress Counter Box Plugin <= 2.0.5 - Cross Site Request Forgery (CSRF) to Settings Change vulnerability

EPSS
0.04%
First published (updated )

Wow-company Herd EffectsWordPress Herd Effects Plugin <= 6.2.1 - Cross Site Request Forgery (CSRF) to Settings Change vulnerability

EPSS
0.04%
First published (updated )

Wow-company Modal WindowWordPress Modal Window Plugin <= 6.1.4 - Cross Site Request Forgery (CSRF) to Settings Change vulnerability

EPSS
0.04%
First published (updated )

WordPress Sticky Buttons PluginWordPress Sticky Buttons Plugin <= 4.1.1 - Cross Site Request Forgery (CSRF) to Settings Change vulnerability

EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wow-company Button GeneratorWordPress Button Generator – easily Button Builder Plugin <= 3.1.1 - Cross Site Request Forgery (CSRF) vulnerability

EPSS
0.04%
First published (updated )

Wow-Company Popup BoxWordPress Popup Box Plugin <= 3.2.4 - Cross Site Request Forgery (CSRF) vulnerability

EPSS
0.04%
First published (updated )

Wow-Company Side Menu LiteWordPress Side Menu Lite Plugin <= 5.3.1 - Cross Site Request Forgery (CSRF) to Settings Change vulnerability

EPSS
0.04%
First published (updated )

Wow-Company Bubble MenuWordPress Bubble Menu Plugin <= 4.0.2 - Cross Site Request Forgery (CSRF) vulnerability

EPSS
0.04%
First published (updated )

Wow-Company Bubble MenuWordPress Bubble Menu – circle floating menu Plugin <= 3.0.1 is vulnerable to Cross Site Request Forgery (CSRF)

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203