Filter

Wow-company Easy Digital Downloads WordpressWordPress Easy Digital Downloads – Recent Purchases plugin <= 1.0.2 - Remote File Inclusion vulnerability

First published (updated )

Wow-company Viral Signup WordpressViral Signup <= 2.1 - Unauthenticated SQLi

EPSS
0.05%
First published (updated )

Wow-company Floating ButtonWordPress Floating Button Plugin <= 6.0 is vulnerable to Cross Site Request Forgery (CSRF)

8.8
First published (updated )

Wow-company Modal WindowModal Window < 5.2.2 - RFI leading to RCE via CSRF

8.8
First published (updated )

Wow-company Wp CoderWP Coder < 2.5.2 - RFI leading to RCE via CSRF

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wow-company Button GeneratorButton Generator < 2.3.3 - RFI leading to RCE via CSRF

8.8
First published (updated )

Wow-company WpcalcWPcalc <= 2.1 - Authenticated SQL Injection

8.8
First published (updated )

Wow-company Counter BoxCounter Box < 1.2.1 - Arbitrary Counter Activation/Deactivation via CSRF

8.8
First published (updated )

Wow-company Side Menu LiteWordPress Side Menu Lite Plugin <= 4.0 is vulnerable to Cross Site Request Forgery (CSRF)

8.8
First published (updated )

Wow-company Button GeneratorWordPress Button Generator – easily Button Builder Plugin <= 2.3.8 is vulnerable to Cross Site Request Forgery (CSRF)

8.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wow-company Wow FormsWow Forms <= 3.1.3 - Admin+ SQL Injection

7.2
First published (updated )

Wow-company Wow CountdownsWow Countdowns <= 3.1.2 - Admin+ SQLi

7.2
First published (updated )

Wow-company Hover EffectsWordPress Hover Effects plugin <= 2.1 - Authenticated Local File Inclusion (LFI) vulnerability

7.2
First published (updated )

Wow-company Counter BoxWordPress Counter Box plugin <= 1.1.1 - Authenticated Local File Inclusion (LFI) vulnerability

7.2
First published (updated )

Wow-company Wp CoderSQL Injection

7.2
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wow-company Button GeneratorWordPress Button Generator – easily Button Builder Plugin <= 2.3.5 is vulnerable to Cross Site Request Forgery (CSRF)

First published (updated )

Wow-company Wp CoderWP Coder < 2.5.3 - Code Deletion via CSRF

First published (updated )

Wow-company Modal WindowXSS

First published (updated )

Wow-company Bubble MenuMultiple Plugins from Wow-Company - Reflected XSS

First published (updated )

Wow-company Bubble MenuWordPress Bubble Menu – circle floating menu Plugin <= 3.0.1 is vulnerable to Cross Site Request Forgery (CSRF)

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wow-company Woocommerce - Recent Purchases WordpressWoocommerce – Recent Purchases plugin <= 1.0.1 - File Inclusion vulnerability

EPSS
0.04%
First published (updated )

Wow-company Sticky ButtonsXSS

EPSS
0.04%
First published (updated )

Wow-company Viral Signup WordpressViral Signup <= 2.1 - Admin+ Stored XSS

EPSS
0.04%
First published (updated )

Wow-company Herd EffectsHerd Effects < 5.2.3 - Admin+ Stored XSS

First published (updated )

Wow-company Float MenuFloat menu < 5.0.3 - Admin+ Stored Cross-Site Scripting

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Wow-company Bubble MenuBubble Menu < 3.0.5 - Admin+ Stored XSS

First published (updated )

Wow-company Herd EffectsHerd Effects < 5.2.4 - Effect Deletion via CSRF

First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203