Vulnerability Name CVE Severity
WordPress Plugin Form Vibes-Database Manager for Forms SQL Injection (1.4.10) CVE-2024-5325
WordPress Plugin Form Vibes-Database Manager for Forms Unspecified Vulnerability (1.4.2)
WordPress Plugin ForumConverter SQL Injection (1.11)
WordPress Plugin Forums 'url' Parameter Arbitrary File Disclosure (1.4.3) CVE-2012-4920
WordPress Plugin Forym-Modern Discussion Forum for Wordpress-Forums Cross-Site Scripting (1.5.8)
WordPress Plugin Fotobook Cross-Site Scripting (3.2.3)
WordPress Plugin FourSquare Checkins Cross-Site Request Forgery (1.2) CVE-2013-2709
WordPress Plugin Fourteen Extended Cross-Site Scripting (1.2.31) CVE-2014-5156
WordPress Plugin FoxyPress 'uploadify.php' Arbitrary File Upload (0.4.2.1)
WordPress Plugin FoxyPress Multiple Vulnerabilities (0.4.2.5)
WordPress Plugin FoxyShop Cross-Site Scripting (4.6)
WordPress Plugin FPW Category Thumbnails Multiple Unspecified Vulnerabilities (1.6.7)
WordPress Plugin Free Booking for Hotels, Restaurant and Car Rental-eaSYNC Arbitrary File Upload (1.1.15) CVE-2022-1952
WordPress Plugin Free counter Cross-Site Scripting (1.1) CVE-2015-4084
WordPress Plugin Free Live Chat Support Cross-Site Request Forgery (1.0.11) CVE-2022-2039
WordPress Plugin FreeMind WP Browser Cross-Site Request Forgery (1.2) CVE-2022-2443
WordPress Plugin Free Responsive Post/Article Author Section for WordPress-Ultimate Author Box Lite includes Backdoor [Only if downloaded via the vendor website] (1.1.2) CVE-2021-24867
WordPress Plugin Free Responsive Tab For WordPress-Everest Tab Lite includes Backdoor [Only if downloaded via the vendor website] (2.0.3) CVE-2021-24867
WordPress Plugin Freetobook review widget Unspecified Vulnerability (1.0)
WordPress Plugin freetobook widget Unspecified Vulnerability (1.0.5)
WordPress Plugin Free WordPress To Display Like/Dislike Comment Rating-Everest Comment Rating Lite includes Backdoor [Only if downloaded via the vendor website] (2.0.4) CVE-2021-24867
WordPress Plugin FreshMail For WordPress Multiple SQL Injection Vulnerabilities (1.5.8)
WordPress Plugin Front-end Editor 'upload.php' Arbitrary File Upload (2.2.1)
WordPress Plugin Front-End Only Users Cross-Site Scripting (3.1.10)
WordPress Plugin Frontend File Manager Arbitrary File Upload (1.8)
WordPress Plugin Frontend File Manager Arbitrary File Upload (3.3) CVE-2014-5324
WordPress Plugin Frontend File Manager Arbitrary File Upload (3.7)
WordPress Plugin Frontend File Manager Arbitrary File Upload (3.9)
WordPress Plugin Frontend File Manager Cross-Site Request Forgery (21.3) CVE-2022-3126
WordPress Plugin Frontend File Manager Multiple Vulnerabilities (18.2)
WordPress Plugin Frontend File Manager Multiple Vulnerabilities (21.2) CVE-2022-3124 CVE-2022-3125
WordPress Plugin Frontend Post WordPress-AccessPress Anonymous Post includes Backdoor [Only if downloaded via the vendor website] (2.8.0) CVE-2021-24867
WordPress Plugin Front End Upload 'upload.php' Arbitrary File Upload (0.5.3)
WordPress Plugin Front End Upload Arbitrary File Upload (0.5.4.4)
WordPress Plugin Frontend Uploader Cross-Site Scripting (0.9.2) CVE-2014-9444
WordPress Plugin Frontend Uploader Cross-Site Scripting (1.3.2) CVE-2021-24563
WordPress Plugin Front File Manager 'upload.php' Arbitrary File Upload (0.1)
WordPress Plugin Frontier Post Security Bypass (1.3.2)
WordPress Plugin Fuctweb CapCC 'plugins.php' SQL Injection (1.0)
WordPress Plugin Fudousan Cross-Site Scripting (5.7.0) CVE-2021-20749
WordPress Plugin FunCaptcha-Anti-Spam CAPTCHA Cross-Site Request Forgery (0.3.2)
WordPress Plugin FunCaptcha-Anti-Spam CAPTCHA Multiple Cross-Site Scripting Vulnerabilities (0.4.3)
WordPress Plugin Fungif The Awesome GIFs Cross-Site Scripting (2.0)
WordPress Plugin Funky Penguin WP-PHPList 'unsubscribeemail' Parameter Cross-Site Scripting (2.10.2)
WordPress Plugin Funnel Builder by CartFlows-Create High Converting Sales Funnels For WordPress Cross-Site Request Forgery (1.5.15)
WordPress Plugin Funnel Builder by CartFlows-Create High Converting Sales Funnels For WordPress Cross-Site Scripting (1.6.12) CVE-2021-24330
WordPress Plugin Funnel Builder by CartFlows-Create High Converting Sales Funnels For WordPress Privilege Escalation (1.3.0)
WordPress Plugin furikake Open Redirect (0.1.0) CVE-2017-1000434
WordPress Plugin Fusion:Extension-Gallery Multiple Unspecified Vulnerabilities (1.0.4)
WordPress Plugin Fusion:Extension-Map Multiple Unspecified Vulnerabilities (1.0.3)
WordPress Plugin Fusion:Extension-Menu Multiple Unspecified Vulnerabilities (1.0.2)
WordPress Plugin Fusion Engage Local File Disclosure (1.0.5)
WordPress Plugin FV Flowplayer Video Player Cross-Site Request Forgery (7.5.30.7210) CVE-2023-25066
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (6.0.3.3)
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (6.6.4) CVE-2018-0642
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (7.2.0.727)
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (7.3.13.727) CVE-2019-14799
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (7.4.37.727) CVE-2020-35748
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (7.5.2.727) CVE-2021-39350
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (7.5.18.727) CVE-2022-25613
WordPress Plugin FV Flowplayer Video Player Cross-Site Scripting (7.5.32.7212) CVE-2023-30499
WordPress Plugin FV Flowplayer Video Player Multiple Vulnerabilities (7.3.14.727) CVE-2019-14800 CVE-2019-14801
WordPress Plugin FV Flowplayer Video Player SQL Injection (7.3.18.727) CVE-2019-13573
WordPress Plugin FV Flowplayer Video Player SQL Injection (7.5.15.727) CVE-2022-25607
WordPress Plugin FV Flowplayer Video Player SQL Injection (7.5.46.7212) CVE-2024-6338
WordPress Plugin FV Flowplayer Video Player URL Cross-Site Scripting (1.2.11) CVE-2011-4568
WordPress Plugin G-Lock Double Opt-in Manager 'ajaxbackend.php' SQL Injection (2.6.2)
WordPress Plugin GA Backend Tracking Cross-Site Scripting (1.2)
WordPress Plugin GA Google Analytics Cross-Site Scripting (20210211)
WordPress Plugin Galleries by Angie Makes Cross-Site Scripting (1.67) CVE-2022-4795
WordPress Plugin Gallery-Flagallery Photo Portfolio 'facebook.php' Cross-Site Scripting (1.56) CVE-2011-4624
WordPress Plugin Gallery-Flagallery Photo Portfolio 'flagshow.php' Cross-Site Scripting (1.57)
WordPress Plugin Gallery-Flagallery Photo Portfolio 'skin' Parameter Cross-Site Scripting (1.72)
WordPress Plugin Gallery-Flagallery Photo Portfolio Cross-Site Request Forgery (3.01)
WordPress Plugin Gallery-Flagallery Photo Portfolio Cross-Site Request Forgery (5.3.6)