Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total15,581
Critical940
High3,162
Medium11,246
Reset
Showing 3981-4000 of 15581 records
Threat Entry Updated 2025-11-21

CVE-2025-11763 - Display Pages Shortcode Plugin

The Display Pages Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'column_count' parameter in the [display-pages] shortcode in all versions up to, and including, 1.1. This is due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN Display Pages Shortcode

CVE-2025-11763

MEDIUM CVSS 6.4 2025-11-21
Threat Entry Updated 2025-11-21

CVE-2025-11003 - Uipress Lite Plugin

The UiPress lite | Effortless custom dashboards, admin themes and pages plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'uip_save_ui_template' function in all versions up to, and including, 3.5.08. This makes it possible for authenticated attackers, with Subscriber-level access and above, to save templates that contain custom JavaScript.

PLUGIN Uipress Lite

CVE-2025-11003

MEDIUM CVSS 6.4 2025-11-21
Threat Entry Updated 2025-12-03

CVE-2025-12169 - Wsdesk Plugin

The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'wp_ajax_eh_crm_settings_empty_scheduled_actions' AJAX Action in all versions up to, and including, 3.3.0. This makes it possible for authenticated attackers, with Subscriber-level access and above, to clear the scheduled triggers option.

PLUGIN Wsdesk

CVE-2025-12169

MEDIUM CVSS 4.3 2025-11-21
Threat Entry Updated 2025-11-21

CVE-2025-11368 - Wordpress Lms Plugin

The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Sensitive Information Disclosure in all versions up to, and including, 4.2.9.4. This is due to missing capability checks in the REST endpoint /wp-json/lp/v1/load_content_via_ajax which allows arbitrary callback execution of admin-only template methods. This makes it possible for unauthenticated attackers to retrieve admin curriculum HTML, quiz questions with correct answers, course materials, and other sensitive educational content via the REST API endpoint granted they can supply valid numeric IDs.

PLUGIN Wordpress Lms

CVE-2025-11368

MEDIUM CVSS 5.3 2025-11-21
Threat Entry Updated 2025-12-03

CVE-2025-12085 - Wsdesk Plugin

The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'eh_crm_settings_empty_trash' function in all versions up to, and including, 3.3.1. This makes it possible for authenticated attackers, with Subscriber-level access and above, to empty the ticket trash.

PLUGIN Wsdesk

CVE-2025-12085

MEDIUM CVSS 4.3 2025-11-21
Threat Entry Updated 2025-12-03

CVE-2025-12023 - Wsdesk Plugin

The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the eh_crm_restore_data() function in all versions up to, and including, 3.3.1. This makes it possible for authenticated attackers, with Subscriber-level access and above, to restore tickets.

PLUGIN Wsdesk

CVE-2025-12023

MEDIUM CVSS 4.3 2025-11-21
Threat Entry Updated 2025-12-03

CVE-2025-12022 - Wsdesk Plugin

The ELEX WordPress HelpDesk & Customer Ticketing System plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'eh_crm_settings_restore_trash' AJAX endpoint in all versions up to, and including, 3.3.1. This makes it possible for authenticated attackers, with Subscriber-level access and above, to restore all deleted tickets.

PLUGIN Wsdesk

CVE-2025-12022

MEDIUM CVSS 4.3 2025-11-21
Threat Entry Updated 2025-11-21

CVE-2025-12502 - Attention Bar Plugin

The attention-bar WordPress plugin through 0.7.2.1 does not sanitize and escape a parameter before using it in a SQL statement, allowing high privilege users such as administrator to perform SQL injection attacks

PLUGIN Attention Bar

CVE-2025-12502

MEDIUM CVSS 6.8 2025-11-20
Threat Entry Updated 2025-11-21

CVE-2025-12778 - Wordpress User Directory Plugin

The Ultimate Member Widgets for Elementor – WordPress User Directory plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the handle_filter_users function in all versions up to, and including, 2.3. This makes it possible for unauthenticated attackers to extract partial metadata of all WordPress users, including their first name, last name and email addresses.

PLUGIN Wordpress User Directory

CVE-2025-12778

MEDIUM CVSS 5.3 2025-11-20
Threat Entry Updated 2025-11-26

CVE-2025-13206 - Givewp Plugin

The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘name’ parameter in all versions up to, and including, 4.13.0 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. Avatars must be enabled in the WordPress install in order to exploit the vulnerability.

PLUGIN Givewp

CVE-2025-13206

HIGH CVSS 7.2 2025-11-19
Threat Entry Updated 2025-11-19

CVE-2025-13035 - Code Snippets Plugin

The Code Snippets plugin for WordPress is vulnerable to PHP Code Injection in all versions up to, and including, 3.9.1. This is due to the plugin's use of extract() on attacker-controlled shortcode attributes within the `evaluate_shortcode_from_flat_file` method, which can be used to overwrite the `$filepath` variable and subsequently passed to require_once. This makes it possible for authenticated attackers, with Contributor-level access and above, to execute arbitrary PHP code on the server via the `[code_snippet]` shortcode using PHP filter chains granted they can trick an administrator into enabling the "Enable file-based…

PLUGIN Code Snippets

CVE-2025-13035

HIGH CVSS 8.0 2025-11-19
Threat Entry Updated 2025-11-19

CVE-2025-12484 - And Social Followers Plugin

The Giveaways and Contests by RafflePress – Get More Website Traffic, Email Subscribers, and Social Followers plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple social media username parameters in all versions up to, and including, 1.12.19 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN And Social Followers

CVE-2025-12484

HIGH CVSS 7.2 2025-11-19
Threat Entry Updated 2025-11-19

CVE-2025-13085 - Seo Simplified Plugin

The SiteSEO – SEO Simplified plugin for WordPress is vulnerable to Improper Authorization leading to Sensitive Post Meta Disclosure in versions up to and including 1.3.2. This is due to missing object-level authorization checks in the resolve_variables() AJAX handler. This makes it possible for authenticated attackers with the siteseo_manage capability (e.g., Author-level users who have been granted SiteSEO access by an administrator) to read arbitrary post metadata from any post, page, attachment, or WooCommerce order they cannot edit, via the custom field variable resolution feature granted they have been given…

PLUGIN Seo Simplified

CVE-2025-13085

MEDIUM CVSS 4.3 2025-11-19
Threat Entry Updated 2025-11-19

CVE-2025-12535 - Sureforms Plugin

The SureForms plugin for WordPress is vulnerable to Cross-Site Request Forgery Bypass in all versions up to, and including, 1.13.1. This is due to the plugin distributing generic WordPress REST API nonces (wp_rest) to unauthenticated users via the 'wp_ajax_nopriv_rest-nonce' action. While the plugin legitimately needs to support unauthenticated form submissions, it incorrectly uses generic REST nonces instead of form-specific nonces. This makes it possible for unauthenticated attackers to bypass CSRF protection on REST API endpoints that rely solely on nonce verification without additional authentication checks, allowing them to trigger unauthorized…

PLUGIN Sureforms

CVE-2025-12535

MEDIUM CVSS 5.3 2025-11-19
Threat Entry Updated 2025-11-19

CVE-2025-13145 - Wp Ultimate Csv Importer Plugin

The WP Import – Ultimate CSV XML Importer for WordPress plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 7.33.1. This is due to deserialization of untrusted data supplied via CSV file imports in the import_single_post_as_csv function within SingleImportExport.php. This makes it possible for authenticated attackers, with administrator-level access or higher, to inject a PHP object. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve…

PLUGIN Wp Ultimate Csv Importer

CVE-2025-13145

HIGH CVSS 7.2 2025-11-19
Threat Entry Updated 2025-11-19

CVE-2025-13054 - User Role Editor Plugin

The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wppb-embed shortcode in all versions up to, and including, 3.14.8 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN User Role Editor

CVE-2025-13054

MEDIUM CVSS 6.4 2025-11-19
Threat Entry Updated 2025-11-19

CVE-2025-12878 - Funnel Builder Plugin

The FunnelKit – Funnel Builder for WooCommerce Checkout plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `wfop_phone` shortcode in all versions up to, and including, 3.13.1.2. This is due to insufficient input sanitization and output escaping on the user-supplied `default` attribute. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN Funnel Builder

CVE-2025-12878

MEDIUM CVSS 6.4 2025-11-19
Threat Entry Updated 2025-11-19

CVE-2025-12646 - Community Events Plugin

The Community Events plugin for WordPress is vulnerable to SQL Injection via the 'dayofyear' parameter in all versions up to, and including, 1.5.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

PLUGIN Community Events

CVE-2025-12646

HIGH CVSS 7.5 2025-11-19
Threat Entry Updated 2025-11-19

CVE-2025-12710 - Tier Management Petfinder Plugin

The Pet-Manager – Petfinder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the kwm-petfinder shortcode in all versions up to, and including, 3.6.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN Tier Management Petfinder

CVE-2025-12710

MEDIUM CVSS 6.4 2025-11-19
Scroll to top