Vulnerability Name |
CVE
CWE
|
CWE |
Severity |
WordPress Plugin Contact Form for WordPress-Ultimate Form Builder Lite includes Backdoor [Only if downloaded via the vendor website] (1.5.0)
|
CVE-2021-24867
CWE-912
|
CWE-912
|
High
|
WordPress Plugin Contact Form for WordPress-Ultimate Form Builder Lite Multiple Cross-Site Scripting Vulnerabilities (1.3.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contact Form for WordPress-Ultimate Form Builder Lite Multiple Vulnerabilities (1.3.6)
|
CVE-2017-15919
CWE-89
CWE-915
|
CWE-89
CWE-915
|
High
|
WordPress Plugin Contact Form for WordPress-Ultimate Form Builder Lite Multiple Vulnerabilities (1.3.7)
|
CWE-79
CWE-89
|
CWE-79
CWE-89
|
High
|
WordPress Plugin Contact Form Generator Multiple Cross-Site Request Forgery Vulnerabilities (2.1.86)
|
CVE-2015-6965
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Contact Form Integrated With Google Maps Cross-Site Scripting (2.4)
|
CVE-2014-7238
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contact Form Manager Multiple Cross-Site Scripting Vulnerabilities (1.4.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contact Form Manager Multiple Vulnerabilities (1.4.4)
|
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin Contact Form Multi by BestWebSoft Cross-Site Scripting (1.2.0)
|
CVE-2017-2171
CVE-2017-2171
CVE-2017-18490
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contact Form Submissions SQL Injection (1.6.4)
|
CVE-2021-24125
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Contact Form Submissions Unspecified Vulnerability (1.2)
|
|
|
High
|
WordPress Plugin Contact Form Submissions Unspecified Vulnerability (1.6.3)
|
|
|
High
|
WordPress Plugin Contact Form to DB by BestWebSoft-Messages Database For WordPress Cross-Site Scripting (1.4.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contact Form to DB by BestWebSoft-Messages Database For WordPress Cross-Site Scripting (1.5.6)
|
CVE-2017-2171
CVE-2017-2171
CVE-2017-18492
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contact Form to DB by BestWebSoft-Messages Database For WordPress SQL Injection (1.7.0)
|
CVE-2023-29096
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Contact Form to DB by BestWebSoft-Messages Database For WordPress SQL Injection (1.7.1)
|
CVE-2023-36508
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Contact Form to DB by BestWebSoft-Messages Database For WordPress SQL Injection (1.7.2)
|
CVE-2024-35678
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Contact Form Unspecified Vulnerability (1.1.9)
|
|
|
High
|
WordPress Plugin Contact Form Unspecified Vulnerability (1.2)
|
|
|
High
|
WordPress Plugin Contact Form Widget-Contact Query, Form Maker SQL Injection (1.0.9)
|
CVE-2019-17072
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Contact Form With Captcha Cross-Site Request Forgery (1.6.2)
|
CVE-2021-42358
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Contact Form X Cross-Site Scripting (2.4)
|
CVE-2022-25601
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contact List-Easy Business Directory, Staff Directory and Address Book Cross-Site Scripting (2.9.41)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Content Audit Blind SQL Injection (1.6)
|
CVE-2014-5389
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Content Audit Multiple Vulnerabilities (1.9.1)
|
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin Content Aware Sidebars-Unlimited Widget Areas Security Bypass (3.8)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Content Blocks (Custom Post Widget) Cross-Site Scripting (3.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Content Blocks (Custom Post Widget) Local File Inclusion (3.3.0)
|
CVE-2024-3564
CWE-22
|
CWE-22
|
High
|
WordPress Plugin Contentboxes Cross-Site Scripting (1.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Content Cards Cross-Site Scripting (0.9.6)
|
CVE-2017-17096
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Content Control-User Access Restriction Cross-Site Scripting (1.1.9)
|
CVE-2022-4509
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Content Copy Protection & Prevent Image Save Cross-Site Request Forgery (1.3)
|
CVE-2021-24333
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Content Grabber Multiple Vulnerabilities (1.0)
|
CWE-79
CWE-352
|
CWE-79
CWE-352
|
High
|
WordPress Plugin Content Staging Cross-Site Scripting (2.0.1)
|
CVE-2021-39356
CWE-79
|
CWE-79
|
High
|
WordPress Plugin ContentStudio Multiple Vulnerabilities (1.2.5)
|
CVE-2023-0556
CVE-2023-0557
CVE-2023-0558
CWE-200
CWE-287
CWE-862
|
CWE-200
CWE-287
CWE-862
|
High
|
WordPress Plugin Content text slider on post Cross-Site Scripting (6.8)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Content Timeline Multiple SQL Injection Vulnerabilities (4.4.2)
|
CVE-2017-14507
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Contest Gallery-Photo Contest for WordPress Cross-Site Request Forgery (10.4.1.1)
|
CVE-2019-5974
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Contest Gallery-Photo Contest for WordPress Cross-Site Scripting (13.1.0.9)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contest Gallery-Photo Contest for WordPress Cross-Site Scripting (14.1.7)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contest Gallery-Photo Contest for WordPress Security Bypass (13.1.0.6)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Contest Gallery-Photo Contest for WordPress SQL Injection (13.1.0.5)
|
CVE-2021-24915
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Contextual Adminbar Color Cross-Site Scripting (0.2)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contextual Related Posts Cross-Site Request Forgery (1.8.6)
|
CVE-2013-2710
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Contextual Related Posts Cross-Site Request Forgery (2.9.3)
|
CWE-352
|
CWE-352
|
High
|
WordPress Plugin Contextual Related Posts Cross-Site Scripting (3.3.0)
|
CVE-2023-0252
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Contextual Related Posts Multiple Vulnerabilities (3.3.1)
|
CWE-352
CWE-862
|
CWE-352
CWE-862
|
High
|
WordPress Plugin Controlled Admin Access Security Bypass (1.4.0)
|
CVE-2021-24215
CWE-284
|
CWE-284
|
High
|
WordPress Plugin Controlled Admin Access Security Bypass (1.5.5)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Contus HD FLV Player 'process-sortable.php' SQL Injection (1.3)
|
CWE-89
|
CWE-89
|
High
|
WordPress Plugin Contus HD FLV Player 'uploadVideo.php' Arbitrary File Upload (1.7)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin CONTUS VBLOG-Video Blogging 'save.php' Arbitrary File Upload (1.0)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Conversador Cross-Site Scripting (2.61)
|
CVE-2014-4519
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Convert Docx2post Arbitrary File Upload (1.4)
|
CWE-434
|
CWE-434
|
High
|
WordPress Plugin Convert Plus Security Bypass (3.4.2)
|
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Convert Plus Security Bypass (3.4.4)
|
CVE-2019-15863
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Convert Plus Unspecified Vulnerability (3.5.6)
|
|
|
High
|
WordPress Plugin Cooked-Recipe Cross-Site Scripting (1.7.9)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cooked Pro Cross-Site Scripting (1.7.5.5)
|
CVE-2021-24233
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cookie Bar Cross-Site Scripting (1.8.8)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cookiebot-GDPR/CCPA Compliant Cookie Consent and Control Cross-Site Scripting (3.6.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cookie Consent for WP-Cookie Consent, Consent Log, Cookie Scanner, Script Blocker (for GDPR, CCPA & ePrivacy) Cross-Site Scripting (3.2.0)
|
CVE-2024-4869
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cookie Consent for WP-Cookie Consent, Consent Log, Cookie Scanner, Script Blocker (for GDPR, CCPA & ePrivacy) CSV Injection (2.2.5)
|
CVE-2023-23678
CWE-1236
|
CWE-1236
|
High
|
WordPress Plugin Cookie Consent for WP-Cookie Consent, Consent Log, Cookie Scanner, Script Blocker (for GDPR, CCPA & ePrivacy) Security Bypass (3.0.2)
|
CVE-2024-3599
CWE-862
|
CWE-862
|
High
|
WordPress Plugin Cookie Information-Free GDPR Consent Solution Cross-Site Scripting (1.5.5)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cookie Information-Free GDPR Consent Solution Privilege Escalation (1.4.2)
|
CVE-2018-19207
CWE-264
|
CWE-264
|
High
|
WordPress Plugin Cookie Information-Free GDPR Consent Solution Security Bypass (2.0.22)
|
CVE-2023-6700
CWE-862
|
CWE-862
|
High
|
WordPress Plugin Cookie Law Bar Cross-Site Scripting (1.2.1)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cookie Notice & Compliance for GDPR/CCPA Cross-Site Scripting (2.1.1)
|
CVE-2021-24569
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cookie Notice & Consent Banner for GDPR & CCPA Compliance Cross-Site Scripting (1.7.1)
|
CVE-2021-24590
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cookie Notification for WordPress-WP Cookie User Info includes Backdoor [Only if downloaded via the vendor website] (1.0.7)
|
CVE-2021-24867
CWE-912
|
CWE-912
|
High
|
WordPress Plugin CoolClock-a Javascript Analog Clock Cross-Site Scripting (4.3.4)
|
CVE-2021-24670
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cool Flickr Slideshow Cross-Site Scripting (1.0)
|
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cool Tag Cloud Cross-Site Scripting (2.25)
|
CVE-2021-24682
CWE-79
|
CWE-79
|
High
|
WordPress Plugin Cool Timeline (Horizontal & Vertical Timeline) Cross-Site Request Forgery (2.0.2)
|
CWE-352
|
CWE-352
|
High
|