Vulnerability Name CVE Severity
WordPress Plugin Photo Gallery by 10Web-Mobile-Friendly Image Gallery Unspecified Vulnerability (1.5.55)
WordPress Plugin Photo Gallery by Ays-Responsive Image Gallery SQL Injection (1.0.0)
WordPress Plugin Photo Gallery by Ays-Responsive Image Gallery SQL Injection (4.4.3) CVE-2021-24462
WordPress Plugin Photo Gallery by Supsystic Multiple Vulnerabilities (1.8.5)
WordPress Plugin Photoracer 'id' Parameter SQL Injection (1.0) CVE-2009-2122
WordPress Plugin Photoracer Multiple Cross-Site Scripting and SQL Injection Vulnerabilities (1.0)
WordPress Plugin PhotoSmash Galleries 'action' Parameter Cross-Site Scripting (1.0.2) CVE-2011-5307
WordPress Plugin PhotoSmash Galleries Arbitrary File Upload (1.0.7)
WordPress Plugin Photospace Gallery Cross-Site Scripting (2.3.5) CVE-2022-3991
WordPress Plugin Photospace Responsive Gallery Unspecified Vulnerability (1.1.7)
WordPress Plugin Photoswipe Masonry Gallery Cross-Site Scripting (1.2.14) CVE-2022-0750
WordPress Plugin Photoswipe Masonry Gallery Unspecified Vulnerability (1.2.17)
WordPress Plugin PhotoXhibit Multiple Cross-Site Scripting Vulnerabilities (2.1.8) CVE-2016-1000143 CVE-2016-1000144
WordPress Plugin PHP Analytics Arbitrary File Upload (1.0.0.2)
WordPress Plugin PHP Event Calendar for WordPress Arbitrary File Upload (1.6)
WordPress Plugin PHP Everywhere Multiple Remote Code Execution Vulnerabilities (2.0.3) CVE-2022-24663 CVE-2022-24664 CVE-2022-24665
WordPress Plugin PHP Everywhere Security Bypass (1.3)
WordPress Plugin PHPFreeChat 'url' Parameter Cross-Site Scripting (0.2.8)
WordPress Plugin PHP Speedy 'admin_container.php' Remote PHP Code Execution (0.5.2)
WordPress Plugin PI Button includes Backdoor [Only if downloaded via the vendor website] (3.3.3) CVE-2021-24867
WordPress Plugin PICA Photo Gallery 'imgname' Parameter Information Disclosure (1.0)
WordPress Plugin PICA Photo Gallery 'picaPhotosResize.php' Arbitrary File Upload (1.0)
WordPress Plugin PICA Photo Gallery SQL Injection (1.0)
WordPress Plugin PickPlugins Product Slider for WooCommerce Cross-Site Scripting (1.13.21) CVE-2021-24300
WordPress Plugin PickPlugins Product Slider for WooCommerce Unspecified Vulnerability (1.13.23)
WordPress Plugin PictoBrowser Cross-Site Request Forgery (0.3.1) CVE-2014-9392
WordPress Plugin PictPress 'resize.php' Multiple Local File Include Vulnerabilities (1.0) CVE-2007-6369
WordPress Plugin Picture Gallery-Frontend Image Uploads, AJAX Photo List Cross-Site Scripting (1.4.2)
WordPress Plugin Picturesurf Gallery 'upload.php' Arbitrary File Upload (1.2)
WordPress Plugin Pierre's Wordspew 'wordspew.php' Multiple SQL Injection Vulnerabilities (5.61)
WordPress Plugin Pike Firewall Information Disclosure (1.4)
WordPress Plugin PIKLIST-Rapid development framework Cross-Site Scripting (0.9.4.25)
WordPress Plugin Pinblocks-Gutenberg blocks with Pinterest widgets Unspecified Vulnerability (1.0.1)
WordPress Plugin Pinpoint Booking System-#1 WordPress Booking SQL Injection (1.2) CVE-2014-3210
WordPress Plugin Pinpoint Booking System-#1 WordPress Booking SQL Injection (2.0)
WordPress Plugin Pinpoint Booking System-#1 WordPress Booking SQL Injection (2.9.9.2.8) CVE-2023-0220
WordPress Plugin Pinterest 'Pin It' Button Cross-Site Scripting (2.0.8)
WordPress Plugin Pinterest 'Pin It' Button Multiple Unspecified Vulnerabilities (1.3.1)
WordPress Plugin Pinterest Automatic Pin Security Bypass (4.14.3)
WordPress Plugin Pinterest Badge Cross-Site Scripting (1.9.0)
WordPress Plugin Pinterest by BestWebSoft Cross-Site Scripting (1.0.4) CVE-2017-2171
WordPress Plugin Pinterest Feed Multiple Vulnerabilities (1.1.1) CVE-2018-5653 CVE-2018-5654 CVE-2018-5655 CVE-2018-5656
WordPress Plugin pipdig Power pack (p3) Backdoor (4.7.3)
WordPress Plugin PitchPrint Arbitrary File Upload (7.1.1)
WordPress Plugin PitchPrint Arbitrary File Upload (7.2.1)
WordPress Plugin Pixabay Images Multiple Vulnerabilities (2.3) CVE-2015-1365 CVE-2015-1366 CVE-2015-1375 CVE-2015-1376
WordPress Plugin PixCodes Cross-Site Scripting (2.3.6) CVE-2022-4671
WordPress Plugin PixelYourSite-Facebook Pixel (Events, WooCommerce & Easy Digital Downloads) Cross-Site Scripting (5.2.1) CVE-2018-0578
WordPress Plugin PixelYourSite-Facebook Pixel (Events, WooCommerce & Easy Digital Downloads) Multiple Unspecified Vulnerabilities (4.0.2)
WordPress Plugin Placemarks Cross-Site Scripting (2.0.0)
WordPress Plugin Plainview Activity Monitor Remote Command Execution (20161228) CVE-2018-15877
WordPress Plugin PlanSo Forms Cross-Site Scripting (2.6.3) CVE-2021-24516
WordPress Plugin Platinum SEO Pack Cross-Site Scripting (1.3.7) CVE-2013-5918
WordPress Plugin Playbuzz Cross-Site Scripting (0.8.1)
WordPress Plugin Plotly Cross-Site Scripting (1.0.2) CVE-2015-5484
WordPress Plugin Plug-N-Edit Full Drag & Drop HTML Visual Editor with Web Page Builder WYSIWYG Cross-Site Scripting (5.2.0)
WordPress Plugin Plugin:Newsletter 'data' Parameter Information Disclosure (1.5) CVE-2012-3588
WordPress Plugin Plugin Central Multiple Cross-Site Scripting Vulnerabilities (2.5)
WordPress Plugin Pluginception Multiple Cross-Site Scripting Vulnerabilities (1.2)
WordPress Plugin Plugmatter Optin Feature Box Multiple SQL Injection Vulnerabilities (2.0.13)
WordPress Plugin Plugmatter Pricing Table Cross-Site Scripting (1.0.32) CVE-2021-34659
WordPress Plugin Plug your WooCommerce into the largest catalog of customized print products from Helloprint Cross-Site Scripting (1.4.6) CVE-2022-3908
WordPress Plugin Podcast Channels Cross-Site Scripting (0.20) CVE-2014-4544
WordPress Plugin Podcast Importer SecondLine SQL Injection (1.3.7) CVE-2022-1023
WordPress Plugin Podcast Subscribe Buttons Cross-Site Scripting (1.4.1) CVE-2021-24743
WordPress Plugin Podlove Podcast Publisher Cross-Site Request Forgery (3.8.3) CVE-2023-25472
WordPress Plugin Podlove Podcast Publisher Cross-Site Scripting (3.8.2) CVE-2023-25046
WordPress Plugin Podlove Podcast Publisher Multiple Cross-Site Scripting Vulnerabilities (2.1.0)
WordPress Plugin Podlove Podcast Publisher Multiple Vulnerabilities (2.3.15) CVE-2016-10941 CVE-2016-10942
WordPress Plugin Podlove Podcast Publisher SQL Injection (2.5.3) CVE-2017-12949
WordPress Plugin Podlove Podcast Publisher SQL Injection (3.5.5) CVE-2021-24666
WordPress Plugin Podlove Subscribe button Cross-Site Scripting (1.3.6)
WordPress Plugin Podlove Subscribe button Multiple Vulnerabilities (1.3.7) CVE-2023-25479 CVE-2023-25481
WordPress Plugin podPress Cross-Site Scripting (8.8.10.13) CVE-2013-2714
WordPress Plugin Pods-Custom Content Types and Fields Multiple Cross-Site Scripting Vulnerabilities (2.7.28)