Vulnerability Name CVE Severity
WordPress Plugin Watu Quiz Cross-Site Scripting (3.3.8.1) CVE-2023-0428
WordPress Plugin Watu Quiz Cross-Site Scripting (3.3.8.2) CVE-2023-0429
WordPress Plugin Watu Quiz Cross-Site Scripting (3.3.9) CVE-2023-0968
WordPress Plugin Watu Quiz Cross-Site Scripting (3.3.9.2) CVE-2023-30483
WordPress Plugin Watu Quiz Unspecified Vulnerability (2.6)
WordPress Plugin Wbcom Designs-BuddyPress Group Reviews Security Bypass (2.8.3) CVE-2022-2108
WordPress Plugin WBW Currency Switcher for WooCommerce Cross-Site Scripting (1.6.5) CVE-2022-2575
WordPress Plugin WC Duplicate Order Security Bypass (1.5)
WordPress Plugin WC Duplicate Order Unspecified Vulnerability (1.3)
WordPress Plugin WCFM-Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible SQL Injection (6.5.11) CVE-2021-24835
WordPress Plugin WCFM-Frontend Manager for WooCommerce along with Bookings Subscription Listings Compatible Unspecified Vulnerability (6.5.12)
WordPress Plugin WCFM Membership-WooCommerce Memberships for Multivendor Marketplace Cross-Site Request Forgery (2.9.10) CVE-2022-4941
WordPress Plugin WCFM Membership-WooCommerce Memberships for Multivendor Marketplace Insecure Direct Object Reference (2.10.7) CVE-2023-2276
WordPress Plugin WCFM Membership-WooCommerce Memberships for Multivendor Marketplace Privilege Escalation (2.10.0) CVE-2022-4939
WordPress Plugin Weather Effect-Christmas Santa Snow Falling Cross-Site Request Forgery (1.3.3) CVE-2021-24683
WordPress Plugin Weather Effect-Christmas Santa Snow Falling Cross-Site Scripting (1.3.5) CVE-2021-24709
WordPress Plugin Weather for us-animated weather widget Crypto Mining (1.8)
WordPress Plugin Weaver Show Posts Cross-Site Scripting (1.6) CVE-2023-1404
WordPress Plugin Weaver Xtreme Theme Support Cross-Site Scripting (6.2.6) CVE-2023-0276
WordPress Plugin Webapp builder (Free mobile apps native iPhone iOS & Android Winphone mobile apps) Arbitrary File Upload (2.0) CVE-2017-1002002
WordPress Plugin Web Application Firewall-website security Privilege Escalation (2.1.1) CVE-2024-2172
WordPress Plugin Web Application Firewall-website security Unspecified Vulnerability (2.1.2)
WordPress Plugin WebARX Cross-Site Scripting (1.3.0) CVE-2019-17213
WordPress Plugin Web Directory Free SQL Injection (1.6.9) CVE-2024-3552
WordPress Plugin WebEngage Feedback, Survey and Notification Cross-Site Scripting (2.0.0) CVE-2014-4574
WordPress Plugin Web Forms for Vtiger wordpress Lead capture and Contacts Sync Unspecified Vulnerability (1.0.0)
WordPress Plugin WebHotelier for WordPress Cross-Site Scripting (1.5) CVE-2021-24435
WordPress Plugin Web Invoice-Invoicing and billing for WordPress Multiple SQL Injection Vulnerabilities (2.1.3) CVE-2022-4371 CVE-2022-4372
WordPress Plugin WebLibrarian Cross-Site Scripting (3.4.8.6)
WordPress Plugin WebLibrarian Multiple Unspecified Vulnerabilities (2.6.3.1)
WordPress Plugin WebLibrarian SQL Injection (3.5.4) CVE-2019-1010034
WordPress Plugin Webmention Cross-Site Scripting (4.0.8)
WordPress Plugin WebP Converter for Media Cross-Site Request Forgery (1.0.2) CVE-2019-15834
WordPress Plugin WebP Express Arbitrary File Disclosure (0.14.10) CVE-2019-15330
WordPress Plugin WebP Express Cross-Site Scripting (0.14.4) CVE-2019-15837
WordPress Plugin WebP Express Unspecified Vulnerability (0.14.21)
WordPress Plugin Websimon Tables Cross-Site Scripting (1.3.4)
WordPress Plugin Website FAQ 'website-faq-widget.php' SQL Injection (1.0)
WordPress Plugin Web Stories Server-Side Request Forgery (1.24.0) CVE-2022-3708
WordPress Plugin Web to Print Online Designer Security Bypass (2.3.0)
WordPress Plugin Web Tripwire Arbitrary File Upload (0.1.1)
WordPress Plugin Wechat Broadcast Local/Remote File Inclusion (1.2.0) CVE-2018-16283
WordPress Plugin Wechat Reward Cross-Site Request Forgery (1.7) CVE-2021-24615
WordPress Plugin Weekly Schedule Cross-Site Scripting (3.4.2) CVE-2021-24309
WordPress Plugin weForms-Easy Drag & Drop Contact Form Builder For WordPress CSV Injection (1.4.7) CVE-2020-22276
WordPress Plugin weForms-Easy Drag & Drop Contact Form Builder For WordPress CSV Injection (1.6.3)
WordPress Plugin weForms-Easy Drag & Drop Contact Form Builder For WordPress Supply Chain Attack [Polyfill.io] (1.6.23)
WordPress Plugin weForms-Easy Drag & Drop Contact Form Builder For WordPress Unspecified Vulnerability (1.5.3)
WordPress Plugin Welcart e-Commerce Cross-Site Scripting (2.2.3) CVE-2021-20734
WordPress Plugin Welcart e-Commerce Cross-Site Scripting and Cross-Site Request Forgery Vulnerabilities (1.2.1) CVE-2012-5177 CVE-2012-5178
WordPress Plugin Welcart e-Commerce Information Disclosure (2.2.7)
WordPress Plugin Welcart e-Commerce Multiple SQL Injection Vulnerabilities (1.5.2) CVE-2015-7791
WordPress Plugin Welcart e-Commerce Multiple Vulnerabilities (1.3.12) CVE-2014-10016 CVE-2014-10017
WordPress Plugin Welcart e-Commerce Multiple Vulnerabilities (1.4.17)
WordPress Plugin Welcart e-Commerce Multiple Vulnerabilities (1.8.2) CVE-2016-4825 CVE-2016-4826 CVE-2016-4827 CVE-2016-4828
WordPress Plugin Welcart e-Commerce PHP Object Injection (1.9.3)
WordPress Plugin Welcart e-Commerce PHP Object Injection (1.9.9)
WordPress Plugin Welcart e-Commerce PHP Object Injection (1.9.35) CVE-2020-28339
WordPress Plugin Welcart e-Commerce SQL Injection (2.0.0)
WordPress Plugin Welcome Announcement Multiple Cross-Site Scripting Vulnerabilities (1.0.5)
WordPress Plugin We�re Open! Cross-Site Scripting (1.41) CVE-2022-3139
WordPress Plugin WF Cookie Consent Cross-Site Scripting (1.1.3) CVE-2018-10371
WordPress Plugin White Label CMS Cross-Site Request Forgery (1.5) CVE-2012-5387 CVE-2012-5388
WordPress Plugin White Label CMS Cross-Site Scripting (1.5.2)
WordPress Plugin White Label CMS Cross-Site Scripting (2.2.8) CVE-2022-0422
WordPress Plugin White Label CMS PHP Object Injection (2.4) CVE-2022-4302
WordPress Plugin WHIZZ Cross-Site Request Forgery (1.1) CVE-2017-8099
WordPress Plugin WHIZZ Cross-Site Scripting (1.0.7) CVE-2016-1000154
WordPress Plugin WHMCS Bridge Cross-Site Scripting (6.2) CVE-2021-4074
WordPress Plugin WHOIS 'domain' Parameter Cross-Site Scripting (1.4.2.2) CVE-2011-5194
WordPress Plugin Wholesale Market Arbitrary File Download (2.2.0) CVE-2022-4298
WordPress Plugin Wholesale Market for WooCommerce Arbitrary File Download (1.0.6) CVE-2022-4106
WordPress Plugin Wholesale Market for WooCommerce Arbitrary File Download (1.0.7) CVE-2022-4108
WordPress Plugin Wholesale Market for WooCommerce Directory Traversal (1.0.8) CVE-2022-4109
WordPress Plugin WH Testimonials Cross-Site Scripting (3.0.0) CVE-2023-1372