1 |
- |
image |
2 |
WordPress |
text |
3 |
Plugins |
text |
4 |
Themes |
text |
5 |
API |
text |
6 |
Submit |
text |
7 |
Login |
text |
8 |
Register |
text |
9 |
Email Alerts |
text |
10 |
Submit a Vulnerability |
text |
11 |
Try our API |
text |
12 |
WordPress < 5.4.1 - Authenticated Cross-Site Scripting (XSS) in Customizer |
text |
13 |
WordPress < 5.4.1 - Authenticated Cross-Site Scripting (XSS) in File Uploads |
text |
14 |
WordPress < 5.4.1 - Authenticated Cross-Site Scripting (XSS) in Search Block |
text |
15 |
WordPress < 5.4.1 - Cross-Site Scripting (XSS) in wp-object-cache |
text |
16 |
WordPress < 5.4.1 - Pa***word Reset Tokens Failed to Be Properly Invalidated |
text |
17 |
WordPress < 5.4.1 - Unauthenticated Users View Private Posts |
text |
18 |
WordPress <= 5.3 - Authenticated Improper Access Controls in REST API |
text |
19 |
Multi Scheduler <= 1.0.0 - Arbitrary Record Deletion via CSRF |
text |
20 |
bbPress < 2.6.5 - Authenticated Stored Cross-Site Scripting via the forums li... |
text |
21 |
bbPress < 2.6.5 - Unauthenticated Privilege Escalation when New User Registra... |
text |
22 |
bbPress 2.6-2.6.5 - Authenticated Privilege Escalation via the Super Moderato... |
text |
23 |
Final Tiles Gallery < 3.4.19 - Authenticated Stored Cross-Site Scripting (XSS) |
text |
24 |
MapPress Maps < 2.54.6 - Improper Capability Checks in AJAX Calls |
text |
25 |
Page Builder: PageLayer - Drag and Drop website builder < 1.1.2 - CSRF leadin... |
text |
26 |
Avada < 6.2.3 - Missing Permission Checks leading to Arbitrary Post Creation,... |
text |
27 |
OneTone <= 3.0.6 - Unauthenticated Stored Cross-Site Scripting (XSS) |
text |
28 |
Fruitful < 3.8.2 - Authenticated Stored XSS & Theme Options Deletion |
text |
29 |
Fruitful Theme < 3.8.1 - Unauthenticated Reflected Cross-Site Scripting (XSS) |
text |
30 |
CarSpot < 2.2.3 - Multiple Vulnerabilities |
text |
31 |
Reality < 2.5.3 - Unauthenticated Reflected XSS |
text |
32 |
ListingPro < 2.5.4 - Unauthenticated Reflected XSS |
text |
33 |
Ultimate Addons for Elementor < 1.20.1 - Authentication Bypa*** |
text |
34 |
WP Spell Check < 7.1.10 - Cross-Site Request Forgery (CSRF) |
text |
35 |
Mesmerize & Materialis Themes - Authenticated Options Update |
text |
36 |
WordPress <= 5.3 - Authenticated Improper Access Controls in REST API |
text |
37 |
CSS Hero < 4.07 - Authenticated Reflected XSS |
text |
38 |
WordPress <= 5.3 - Authenticated Stored XSS via Crafted Links |
text |
39 |
Scoutnet Kalender <= 1.1.0 - Stored Cross-Site Scripting (XSS) |
text |
40 |
About |
text |
41 |
API |
text |
42 |
Statistics |
text |
43 |
Contact |
text |
44 |
Email Alerts |
text |