VulDB is a vulnerability database documenting more than 174000 vulnerabilities since 1970. The following list shows the latest vulnerabilities threats and exploits
- CVE-2024-9624 | WP All Import Pro Plugin up to 4.9.3 on WordPress File Import server-side request forgery
- CVE-2024-12443 | CRM Perks Plugin up to 1.1.6 on WordPress cross site scripting
- CVE-2024-8058 | Lenovo FileZ Client prior 9.8.6.0 improper validation of specified type of input
- CVE-2024-54279 | WPNERD WP-NERD Toolkit Plugin up to 1.1 on WordPress exposure of sensitive system information to an unauthorized control sphere
- CVE-2024-54357 | ThemeFusion Avada Plugin up to 7.11.10 on WordPress cross-site request forgery
- CVE-2024-54257 | Molefed tydskrif Plugin up to 1.1.3 on WordPress cross site scripting
- CVE-2024-54249 | Jules Colle Advanced Options Editor Plugin up to 1.0 on WordPress cross site scripting
- CVE-2024-11358 | Mattermost up to 2.21.0 on Android access control
- CVE-2024-56003 | David Cramer Caldera SMTP Mailer Plugin up to 1.0.1 on WordPress authorization
- CVE-2024-43234 | Envato Security Team Woffice Plugin up to 5.4.14 on WordPress authentication bypass
- CVE-2024-54283 | SeedProd Pro Plugin up to 6.18.10 on WordPress sql injection
- CVE-2024-6001 | Lenovo Accessories and Display Manager prior 1.0.5.0.5 certificate validation
- CVE-2024-55999 | Marco Giannini XML Multilanguage Sitemap Generator Plugin up to 2.0.6 on WordPress authorization
- CVE-2024-10095 | Progress Telerik UI for WPF up to 2024.4.1111 deserialization
- CVE-2024-54348 | YayCommerce Brand Plugin up to 1.1.6 on WordPress cross site scripting
- CVE-2024-54285 | SeedProd Pro Plugin up to 6.18.10 on WordPress unrestricted upload
- CVE-2024-54376 | Spider-themes EazyDocs Plugin up to 2.5.5 on WordPress filename control
- CVE-2024-54284 | SeedProd Pro Plugin up to 6.18.10 on WordPress sql injection
- CVE-2024-11144 | LightFTP 2.3 FTP Service race condition
- CVE-2024-54426 | Andy Fradelakis LeaderBoard Plugin up to 1.2.4 on WordPress cross-site request forgery
- CVE-2024-56015 | John Godley Tidy Up Plugin up to 1.3 on WordPress cross-site request forgery
- CVE-2024-54440 | blueskyy WP-Ban-User Plugin up to 1.0 on WordPress cross-site request forgery
- CVE-2024-54438 | Gaxx Keywords Plugin up to 0.2 on WordPress cross-site request forgery
- CVE-2024-54434 | Phoetry phZoom Plugin up to 1.2.92 on WordPress cross-site request forgery
- CVE-2024-54436 | Jettochkin Jet Footer Code Plugin up to 1.4 on WordPress cross-site request forgery
- CVE-2024-54433 | Simple Booking Widget Plugin up to 1.1 on WordPress cross-site request forgery
- CVE-2024-54439 | Alok Tiwari Amazon Product Price Plugin up to 1.1 on WordPress cross-site request forgery
- CVE-2024-54432 | Shambhu Prasad Patnaik WP Flipkart Importer Plugin up to 1.4 on WordPress cross-site request forgery
- CVE-2024-54431 | Mohamed Riyaz Admin Customization Plugin up to 2.2 on WordPress cross-site request forgery
- CVE-2024-54427 | Linda MacPhee-Cobb Category of Posts Plugin up to 1.0 on WordPress cross-site request forgery
- CVE-2024-54428 | onigetoc Add Image to Post Plugin up to 0.6 on WordPress cross-site request forgery
- CVE-2024-54429 | Ivan Ovsyannikov Aphorismus Plugin up to 1.2.0 on WordPress cross-site request forgery
- CVE-2024-54423 | Jesse Overright Social Media Sharing Plugin up to 1.1 on WordPress cross-site request forgery
- CVE-2024-54421 | Sanjay Singh Negi Floating Video Player Plugin up to 1.0 on WordPress cross-site request forgery
- CVE-2024-54415 | Cyle Conoly WP-HideThat Plugin up to 1.2 on WordPress cross-site request forgery
- CVE-2024-54414 | geoWP Geoportail Shortcode Plugin up to 2.4.4 on WordPress cross-site request forgery
- CVE-2024-54416 | Navdeep Kumar Wp Login with Ajax Plugin up to 0.6 on WordPress cross-site request forgery
- CVE-2024-54413 | Stefan Brandt Display Future Posts Plugin up to 0.2.3 on WordPress cross-site request forgery
- CVE-2024-54411 | hosting WP Controller Plugin up to 3.2.0 on WordPress cross-site request forgery
- CVE-2024-37251 | WPENGINE Advanced Custom Fields Pro Plugin up to 6.3.1 on WordPress cross-site request forgery
- CVE-2024-12092 | Dassault Systèmes ENOVIA Collaborative Industry Innovator cross site scripting
- CVE-2024-12091 | Dassault Systèmes ENOVIA Collaborative Industry Innovator cross site scripting
- CVE-2024-12090 | Dassault Systèmes ENOVIA Collaborative Industry Innovator cross site scripting
- CVE-2024-12089 | Dassault Systèmes ENOVIA Collaborative Industry Innovator cross site scripting
- CVE-2024-54229 | Straightvisions SV100 Companion Plugin up to 2.0.02 on WordPress privileges assignment
- CVE-2024-12668 | Velocidex WinPmem up to 4.0 zero out-of-bounds write
- CVE-2024-49775 | Siemens Opcenter Execution Foundation UMC Component heap-based overflow (ssa-928984)
- CVE-2024-54410 | Toby Cox SOPA Blackout Plugin up to 1.4 on WordPress cross-site request forgery
- CVE-2024-54409 | fzmaster XPD Reduce Image Filesize Plugin up to 1.0 on WordPress cross-site request forgery
- CVE-2024-54407 | 随意的风 CK and SyntaxHighlighter Plugin up to 3.4.2 on WordPress cross-site request forgery
- CVE-2024-54404 | Nazmul Ahsan MDC Comment Toolbar Plugin up to 1.1 on WordPress cross-site request forgery
- CVE-2024-54405 | Andy Chapman ECT Social Share Plugin up to 1.3 on WordPress cross-site request forgery
- CVE-2024-54401 | Turcu Ciprian Advanced Fancybox Plugin up to 1.1.1 on WordPress cross-site request forgery
- CVE-2024-54400 | MELONIQ AppMaps Plugin up to 1.1 on WordPress cross-site request forgery
- CVE-2024-54398 | Project Caruso Flaming Forms Plugin up to 1.0.1 on WordPress cross-site request forgery
- CVE-2024-54397 | Antonio Gocaj Go Animate Plugin up to 1.0 on WordPress cross-site request forgery
- CVE-2024-54393 | Sheikh Heera WP Fiddle Plugin up to 1.0 on WordPress cross-site request forgery
- CVE-2024-54392 | Midoks WP微信机器人 Plugin up to 5.3.5 on WordPress cross-site request forgery
- CVE-2024-54394 | Web Solution Soft Mandrill WP Plugin up to 1.0.5 on WordPress cross-site request forgery
- CVE-2024-54332 | WPFactory WP Currency Exchange Rates Plugin up to 1.2.0 on WordPress cross-site request forgery
- CVE-2024-54353 | WPGear Hack-Info Plugin up to 3.17 on WordPress cross-site request forgery
- CVE-2024-54331 | Micha I Plant A Tree Plugin up to 1.7.3 on WordPress cross-site request forgery
- CVE-2024-54412 | Ecommerce Templates ECT Product Carousel Plugin up to 1.9 on WordPress cross-site request forgery
- CVE-2024-54399 | CRUDLab Google Plus Button Plugin up to 1.0.2 on WordPress cross-site request forgery
- CVE-2024-54425 | LionScripts Site Maintenance & Noindex Nofollow Plugin up to 2.1 on WordPress cross-site request forgery
- CVE-2024-56005 | Posti Shipping Plugin up to 3.10.3 on WordPress cross-site request forgery
- CVE-2024-54389 | Eduardo Chiaro addWeather Plugin up to 2.5.1 on WordPress cross-site request forgery
- CVE-2024-54430 | Bastien Ho EELV Newsletter Plugin up to 4.8.2 on WordPress cross-site request forgery
- CVE-2024-54396 | Ryan Bet Sport Free Plugin up to 1.0.0 on WordPress cross-site request forgery
- CVE-2024-54420 | Aleksander Novikov Metrika Plugin up to 1.2 on WordPress cross-site request forgery
- CVE-2024-54355 | brandtoss WP Mailster Plugin up to 1.8.17.0 on WordPress cross-site request forgery
- CVE-2024-54372 | Sourov Amin Insertify Plugin up to 1.1.4 on WordPress cross-site request forgery
- CVE-2024-54388 | Phuc Pham Multiple Admin Emails Plugin up to 1.0 on WordPress cross-site request forgery
- CVE-2024-54443 | Pluginscafe Advanced Data Table for Elementor Plugin up to 1.0.0 on WordPress cross site scripting
- CVE-2024-54352 | Sabri Taieb Sogrid Plugin up to 1.5.2 on WordPress cross-site request forgery
- CVE-2024-54435 | Thomas Hoefter Onlywire Multi Autosubmitter Plugin up to 1.2.4 on WordPress cross-site request forgery
- CVE-2024-54385 | SoftLab Radio Player Plugin up to 2.0.82 on WordPress server-side request forgery
- CVE-2024-54441 | Meini Utech World Time Plugin up to 1.0 on WordPress cross site scripting
- CVE-2024-56007 | Ram Segev Leader Plugin up to 2.6.1 on WordPress authorization
- CVE-2024-56001 | Ksher Plugin up to 1.1.1 on WordPress authorization
- CVE-2024-54442 | Lluís Cortès Better WP Login Page Plugin up to 1.1.2 on WordPress cross site scripting
- CVE-2024-54437 | Merrill M. Mayer jCarousel Plugin up to 1.0 on WordPress cross site scripting
- CVE-2024-54419 | Mansur Ahamed Ui Slider Filter by Price Plugin up to 1.1 on WordPress cross-site request forgery
- CVE-2024-54424 | Ilya Chekalskiy Like in Vk.com Plugin up to 0.5.2 on WordPress cross site scripting
- CVE-2024-54417 | Pixelgrade PixProof Plugin up to 2.0.1 on WordPress authorization
- CVE-2024-54360 | premila Gutensee Plugin up to 1.0.1 on WordPress cross site scripting
- CVE-2024-54418 | Diversified Technology DTC Documents Plugin up to 1.1.05 on WordPress cross-site request forgery
- CVE-2024-54406 | Reza Moallemi Comments On Feed Plugin up to 1.2.1 on WordPress cross site scripting
- CVE-2024-54422 | Gaowei Tang Evernote Sync Plugin up to 3.0.0 on WordPress cross site scripting
- CVE-2024-54403 | Ryan Scott Visual Recent Posts Plugin up to 1.2.3 on WordPress cross site scripting
- CVE-2024-54390 | Bouzid Nazim Zitouni TagGator Plugin up to 1.54 on WordPress cross site scripting
- CVE-2024-54378 | Quietly Insights Plugin up to 1.2.2 on WordPress authorization
- CVE-2024-54386 | Get Push Monkey Push Monkey Pro Plugin up to 3.9 on WordPress cross-site request forgery
- CVE-2024-54395 | Becky Sanders Increase Sociability Plugin up to 1.3.0 on WordPress cross site scripting