WordPress Plugin Add Edit Delete Listing Module is prone to an SQL injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query. Exploiting this issue could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database. WordPress Plugin Add Edit Delete Listing Module version 1.0 is vulnerable.
Edit the source code to ensure that input is properly sanitised or disable the plugin until a fix is available
WordPress Plugin Responsive Notification Bar for WordPress-Apex Notification Bar Lite includes Backdoor [Only if downloaded via the vendor website] (2.0.4)
WordPress Plugin Search & Filter Cross-Site Scripting (1.2.15)
WordPress Plugin AnyVar Cross-Site Scripting (0.1.1)
WordPress Plugin Token Manager 'tid' Parameter Multiple Cross-Site Scripting Vulnerabilities (1.0.2)
WordPress Plugin Erident Custom Login and Dashboard Cross-Site Request Forgery (3.4.1)