Severity Critical High Medium Low Informational Vulnerability Categories Abuse Of Functionality Acumonitor Api Bfla Api Bola Api Broken Auth Api Broken Object Prop Auth Api Dos Api Improper Inventory Management Api Misconfiguration Api Ssrf Arbitrary File Creation Arbitrary File Read Arbitrary File Write Authentication Bypass BOLA Bruteforce Possible Buffer Overflow CSRF CSTI Code Execution Configuration Crlf Injection Deepscan Default Credentials Denial-of-service Dev Files Directory Listing Directory Traversal Eli Injection Error Handling File Inclusion Http Parameter Pollution Http Response Splitting Information Disclosure Insecure Admin Access Insecure Deserialization Internal Ip Disclosure Known Vulnerabilitie Known Vulnerabilities LLM Ldap Injection Llm Excessive Agency Llm Insecure Output Handling Llm Prompt Injection Llm Sensitive Information Disclosure Malware Missing Update Path Traversal Privilege Escalation Remote Code Execution SSRF SSTI Sensitive Data Not Over Ssl Server Side Template Injection Session Fixation Source Code Disclosure Sql Injection Test Files Unauthenticated File Upload Url Redirection Weak Credentials Weak Crypto XFS XSS XXE Xpath Injection Xss - Known Vulnerabilities Vulnerability Name CVE CWE CWE Severity WordPress Plugin Cool Timeline (Horizontal & Vertical Timeline) Security Bypass (2.3.3) CWE-94 CWE-94 High WordPress Plugin Cool Video Gallery Command Injection (1.9) CVE-2015-7527 CWE-94 CWE-94 High WordPress Plugin Cool Video Gallery Cross-Site Request Forgery (1.8) CWE-352 CWE-352 High WordPress Plugin Copify Cross-Site Request Forgery (1.3.0) CVE-2022-1900 CWE-352 CWE-352 High WordPress Plugin Copperleaf Photolog 'cplphoto.php' SQL Injection (0.16) CVE-2010-0673 CWE-89 CWE-89 High WordPress Plugin copy-me Cross-Site Request Forgery (1.0.0) CWE-352 CWE-352 High WordPress Plugin Copy or Move Comments Multiple Vulnerabilities (1.0.0) CWE-79 CWE-352 CWE-79 CWE-352 High WordPress Plugin CopySafe PDF Protection Arbitrary File Upload (0.6) CWE-434 CWE-434 High WordPress Plugin CopySafe PDF Protection Unspecified Vulnerability (1.10) High WordPress Plugin CopySafe Web Protection Cross-Site Request Forgery (2.5) CVE-2017-8100 CWE-352 CWE-352 High WordPress Plugin Corner Ad Cross-Site Scripting (1.0.7) CWE-79 CWE-79 High WordPress Plugin Correos Woocommerce Arbitrary File Download (1.3.0.0) CVE-2023-0331 CWE-552 CWE-552 High WordPress Plugin Countdown and CountUp, WooCommerce Sales Timer Cross-Site Request Forgery (1.5.7) CVE-2021-34636 CWE-352 CWE-352 High WordPress Plugin Countdown Block Security Bypass (1.1.1) CVE-2021-24633 CWE-264 CWE-264 High WordPress Plugin Count per Day 'month' Parameter SQL Injection (2.17) CWE-89 CWE-89 High WordPress Plugin Count per Day 'notes.php' Cross-Site Scripting (3.2.3) CWE-79 CWE-79 High WordPress Plugin Count per Day 'userperspan.php' Multiple Cross-Site Scripting Vulnerabilities (3.1.1) CVE-2012-3434 CWE-79 CWE-79 High WordPress Plugin Count per Day Arbitrary File Download and Cross-Site Scripting Vulnerabilities (3.1) CVE-2012-0896 CWE-22 CWE-79 CWE-22 CWE-79 High WordPress Plugin Count per Day Cross-Site Request Forgery (3.2.5) CWE-352 CWE-352 High WordPress Plugin Count per Day Information Disclosure (3.2.5) CWE-200 CWE-200 High WordPress Plugin Count per Day Multiple Cross-Site Scripting Vulnerabilities (3.5.4) CWE-79 CWE-79 High WordPress Plugin Count per Day Multiple Vulnerabilities (3.5.6) CWE-79 CWE-352 CWE-79 CWE-352 High WordPress Plugin Count per Day Search Bar Cross-Site Scripting (3.2.2) CWE-79 CWE-79 High WordPress Plugin Count per Day SQL Injection (3.4) CVE-2015-5533 CWE-89 CWE-89 High WordPress Plugin Country State City Dropdown CF7 Security Bypass (2.7.1) CVE-2024-3520 CWE-862 CWE-862 High WordPress Plugin Country State City Dropdown CF7 SQL Injection (2.7.2) CVE-2024-3495 CWE-89 CWE-89 High WordPress Plugin Coupon Creator Cross-Site Request Forgery (3.1) CWE-352 CWE-352 High WordPress Plugin Couponer 'print-coupon.php' SQL Injection (1.2) CWE-89 CWE-89 High WordPress Plugin Coupon Tab for DirectoryPress Multiple Cross-Site Scripting Vulnerabilities (0.2.0) CWE-79 CWE-79 High WordPress Plugin CP Contact Form with PayPal Cross-Site Scripting (1.2.97) CVE-2019-14784 CWE-79 CWE-79 High WordPress Plugin CP Contact Form with PayPal Cross-Site Scripting (1.2.98) CVE-2019-14785 CWE-79 CWE-79 High WordPress Plugin CP Contact Form with PayPal Multiple Vulnerabilities (1.1.5) CWE-79 CWE-89 CWE-352 CWE-79 CWE-89 CWE-352 High WordPress Plugin CP Image Store with Slideshow Arbitrary File Download (1.0.5) CWE-22 CWE-22 High WordPress Plugin CP Reservation Calendar SQL Injection (1.1.6) CVE-2015-7235 CWE-89 CWE-89 High WordPress Plugin CPT Bootstrap Carousel Cross-Site Scripting (1.12) CVE-2022-4834 CWE-79 CWE-79 High WordPress Plugin Crafty Social Buttons Cross-Site Scripting (1.5.6) CWE-79 CWE-79 High WordPress Plugin Craw Data Server-Side Request Forgery (1.0.0) CVE-2022-2912 CWE-918 CWE-918 High WordPress Plugin Crayon Syntax Highlighter 'wp_load' Parameter Remote File Include (1.12.1) CWE-94 CWE-94 High WordPress Plugin Crayon Syntax Highlighter Local File Disclosure (2.6.10) CWE-22 CWE-22 High WordPress Plugin Crayon Syntax Highlighter Security Bypass (2.6.10) CWE-264 CWE-264 High WordPress Plugin Crazy Bone Cross-Site Scripting (0.5.6) CWE-79 CWE-79 High WordPress Plugin Creative Contact Form-The Best WordPress Contact Form Builder Arbitrary File Upload (0.9.7) CVE-2014-7969 CWE-94 CWE-94 High WordPress Plugin Credova_Financial Information Disclosure (1.4.8) CVE-2021-39342 CWE-200 CWE-200 High WordPress Plugin Crelly Slider Arbitrary File Upload (1.3.4) CVE-2019-15866 CWE-434 CWE-434 High WordPress Plugin Crelly Slider Multiple Unspecified Vulnerabilities (1.1.1) High WordPress Plugin Crisp Live Chat Cross-Site Request Forgery (0.31) CVE-2021-43353 CWE-352 CWE-352 High WordPress Plugin Crony Cronjob Manager Multiple Vulnerabilities (0.4.4) CVE-2017-14530 CWE-79 CWE-352 CWE-79 CWE-352 High WordPress Plugin Cross-RSS Directory Traversal (1.7) CVE-2014-4941 CWE-22 CWE-22 High WordPress Plugin CrossSlide jQuery Multiple Vulnerabilities (2.0.5) CVE-2015-2089 CWE-79 CWE-352 CWE-79 CWE-352 High WordPress Plugin Crowd Ideas Cross-Site Scripting (1.0) CWE-79 CWE-79 High WordPress Plugin Cryptocurrency Donation Box-Bitcoin & Crypto Donations Security Bypass (1.7) CWE-94 CWE-94 High WordPress Plugin Cryptocurrency Widgets-Price Ticker & Coins List Security Bypass (2.4) CWE-94 CWE-94 High WordPress Plugin Cryptocurrency Widgets For Elementor Security Bypass (1.2.1) CWE-94 CWE-94 High WordPress Plugin Cryptocurrency Widgets Pack SQL Injection (1.8.1) CVE-2022-4059 CWE-89 CWE-89 High WordPress Plugin CSS & JavaScript Toolbox SQL Injection (9.2) CWE-89 CWE-89 High WordPress Plugin CSS Hero Cross-Site Scripting (4.03) CVE-2019-19133 CWE-79 CWE-79 High WordPress Plugin CSS JS Manager, Async JavaScript, Defer Render Blocking CSS supports WooCommerce Cross-Site Request Forgery (2.4.49) CVE-2022-47154 CWE-352 CWE-352 High WordPress Plugin CSS Plus Multiple Unspecified Vulnerabilities (1.3.1) High WordPress Plugin Csv2WPeC Coupon Arbitrary File Upload (1.1) CVE-2015-1000013 CWE-434 CWE-434 High WordPress Plugin Csv Import-Export Multiple Cross-Site Scripting Vulnerabilities (1.1.0) CVE-2017-17753 CWE-79 CWE-79 High WordPress Plugin CSV Import Cross-Site Scripting (1.0) CWE-79 CWE-79 High WordPress Plugin CSV Importer Multiple Unspecified Vulnerabilities (0.3.7) High WordPress Plugin CTA for WordPress-Easy Side Tab includes Backdoor [Only if downloaded via the vendor website] (1.0.7) CVE-2021-24867 CWE-912 CWE-912 High WordPress Plugin Currency Switcher for WooCommerce Security Bypass (2.11.1) CVE-2019-18668 CWE-264 CWE-264 High WordPress Plugin Current Book Cross-Site Scripting (1.0.1) CVE-2021-24538 CWE-79 CWE-79 High WordPress Plugin Custom 404 Pro Cross-Site Request Forgery (3.7.1) CVE-2023-0385 CWE-352 CWE-352 High WordPress Plugin Custom 404 Pro Cross-Site Scripting (3.2.7) CVE-2019-15838 CWE-79 CWE-79 High WordPress Plugin Custom 404 Pro Cross-Site Scripting (3.2.8) CVE-2019-14789 CWE-79 CWE-79 High WordPress Plugin Custom 404 Pro Unspecified Vulnerability (3.7.0) High WordPress Plugin Custom Add User Cross-Site Scripting (2.0.2) CVE-2023-0043 CWE-79 CWE-79 High WordPress Plugin Custom Admin Page by BestWebSoft Cross-Site Scripting (0.1.1) CVE-2017-2171 CVE-2017-2171 CVE-2017-18493 CWE-79 CWE-79 High WordPress Plugin Custom Background 'uploadify.php' Arbitrary File Upload (1.01) CWE-434 CWE-434 High WordPress Plugin Custom Banners Cross-Site Request Forgery (3.2.2) CWE-352 CWE-352 High WordPress Plugin Custom Banners Cross-Site Scripting (1.2.2.2) CVE-2014-4724 CWE-79 CWE-79 High WordPress Plugin Custom Body Class Cross-Site Request Forgery (0.6.0) CWE-352 CWE-352 High 1...83848586...169 84 / 169