Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total15,846
Critical959
High3,226
Medium11,383
Reset
Showing 6061-6080 of 15846 records
Threat Entry Updated 2025-05-07

CVE-2025-3610 - Reales Wp Stpt Plugin

The Reales WP STPT plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 2.1.2. This is due to the plugin not properly validating a user's identity prior to updating their details like password. This makes it possible for authenticated attackers, with subscriber-level access and above, to change arbitrary user's passwords and email addresses, including administrators, and leverage that to gain access to their account. This can be combined with CVE-2025-3609 to achieve remote code execution as an originally unauthenticated user with…

PLUGIN Reales Wp Stpt

CVE-2025-3610

HIGH CVSS 8.8 2025-05-06
Threat Entry Updated 2025-05-07

CVE-2025-3609 - Reales Wp Stpt Plugin

The Reales WP STPT plugin for WordPress is vulnerable to unauthorized user registration in all versions up to, and including, 2.1.2. This is due to the 'reales_user_signup_form' AJAX action not verifying if user registration is enabled, prior to registering a user. This makes it possible for unauthenticated attackers to create new user accounts, which can be leveraged with CVE-XX to achieve privilege escalation.

PLUGIN Reales Wp Stpt

CVE-2025-3609

MEDIUM CVSS 5.3 2025-05-06
Threat Entry Updated 2025-05-28

CVE-2025-1909 - Buddyboss Platform Plugin

The BuddyBoss Platform Pro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.7.01. This is due to insufficient verification on the user being supplied during the Apple OAuth authenticate request through the plugin. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the email.

PLUGIN Buddyboss Platform

CVE-2025-1909

CRITICAL CVSS 9.8 2025-05-05
Threat Entry Updated 2025-05-05

CVE-2025-4279 - External Image Replace Plugin

The External image replace plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'external_image_replace_get_posts::replace_post' function in all versions up to, and including, 1.0.8. This makes it possible for authenticated attackers, with contributor-level and above permissions, to upload arbitrary files on the affected site's server which may make remote code execution possible.

PLUGIN External Image Replace

CVE-2025-4279

HIGH CVSS 8.8 2025-05-05
Threat Entry Updated 2025-05-05

CVE-2024-11615 - Envolve Plugin

The Envolve Plugin plugin for WordPress is vulnerable to arbitrary file deletion in all versions up to, and including, 1.0 via the 'zetra_deleteLanguageFile' and 'zetra_deleteFontsFile' functions. This is due to the plugin not properly validating a file or its path prior to deleting it. This makes it possible for unauthenticated attackers to delete language files.

PLUGIN Envolve

CVE-2024-11615

MEDIUM CVSS 5.3 2025-05-05
Threat Entry Updated 2025-05-07

CVE-2025-3583 - Before 8 Plugin

The Newsletter WordPress plugin before 8.7.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

PLUGIN Before 8

CVE-2025-3583

MEDIUM CVSS 4.8 2025-05-05
Threat Entry Updated 2025-05-05

CVE-2025-3815 - Surveyjs Plugin

The SurveyJS plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ parameter in all versions up to, and including, 1.12.32 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN Surveyjs

CVE-2025-3815

MEDIUM CVSS 6.4 2025-05-03
Threat Entry Updated 2025-05-05

CVE-2025-4199 - Abundatrade Plugin

The Abundatrade Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.8.02. This is due to missing or incorrect nonce validation on the 'abundatrade' page. This makes it possible for unauthenticated attackers to update settings and inject malicious web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

PLUGIN Abundatrade

CVE-2025-4199

MEDIUM CVSS 6.1 2025-05-03
Threat Entry Updated 2025-05-13

CVE-2025-4222 - Database Toolset Plugin

The Database Toolset plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.8.4 via backup files stored in a publicly accessible location. This makes it possible for unauthenticated attackers to extract sensitive data from database backup files. An index file is present, so a brute force attack would need to be successful in order to compromise any data.

PLUGIN Database Toolset

CVE-2025-4222

MEDIUM CVSS 5.9 2025-05-03
Threat Entry Updated 2025-05-05

CVE-2025-3918 - Job Listings Plugin

The Job Listings plugin for WordPress is vulnerable to Privilege Escalation due to improper authorization within the register_action() function in versions 0.1 to 0.1.1. The plugin’s registration handler reads the client-supplied $_POST['user_role'] and passes it directly to wp_insert_user() without restricting to a safe set of roles. This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator.

PLUGIN Job Listings

CVE-2025-3918

CRITICAL CVSS 9.8 2025-05-03
Threat Entry Updated 2025-05-05

CVE-2025-4172 - Vertical Response Newsletter Widget Plugin

The VerticalResponse Newsletter Widget plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'verticalresponse' shortcode in all versions up to, and including, 1.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN Vertical Response Newsletter Widget

CVE-2025-4172

MEDIUM CVSS 6.4 2025-05-03
Threat Entry Updated 2025-05-05

CVE-2025-4170 - Xavins Review Ratings Plugin

The Xavin's Review Ratings plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'xrr' shortcode in all versions up to, and including, 1.4.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN Xavins Review Ratings

CVE-2025-4170

MEDIUM CVSS 6.4 2025-05-03
Threat Entry Updated 2025-05-05

CVE-2025-4168 - Subpage View Plugin

The Subpage List plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'subpages' shortcode in all versions up to, and including, 1.3.3 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN Subpage View

CVE-2025-4168

MEDIUM CVSS 6.4 2025-05-03
Threat Entry Updated 2025-05-05

CVE-2025-4198 - Alink Tap Plugin

The Alink Tap plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.3.1. This is due to missing or incorrect nonce validation on the 'alink-tap' page. This makes it possible for unauthenticated attackers to update settings and inject malicious web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

PLUGIN Alink Tap

CVE-2025-4198

MEDIUM CVSS 6.1 2025-05-03
Threat Entry Updated 2025-05-05

CVE-2025-4188 - Advanced Reorder Image Text Slider Plugin

The Advanced Reorder Image Text Slider plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0. This is due to missing or incorrect nonce validation on the 'reorder-simple-image-text-slider-setting' page. This makes it possible for unauthenticated attackers to update settings and inject malicious web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

PLUGIN Advanced Reorder Image Text Slider

CVE-2025-4188

MEDIUM CVSS 6.1 2025-05-03
Threat Entry Updated 2025-05-05

CVE-2025-3779 - Personizely Plugin

The Personizely plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘widgetId’ parameter in all versions up to, and including, 0.10 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PLUGIN Personizely

CVE-2025-3779

MEDIUM CVSS 6.4 2025-05-03
Threat Entry Updated 2025-06-04

CVE-2025-4204 - Ultimate Wordpress Auction Plugin

The Ultimate Auction Pro plugin for WordPress is vulnerable to SQL Injection via the ‘auction_id’ parameter in all versions up to, and including, 1.5.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

PLUGIN Ultimate Wordpress Auction

CVE-2025-4204

HIGH CVSS 7.5 2025-05-02
Threat Entry Updated 2025-05-09

CVE-2024-13860 - Buddyboss Platform Plugin

The Buddyboss Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘bbp_topic_title’ parameter in all versions up to, and including, 2.8.50 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Subscriber-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. The vulnerability was partially patched in version 2.8.41.

PLUGIN Buddyboss Platform

CVE-2024-13860

MEDIUM CVSS 6.4 2025-05-02
Threat Entry Updated 2025-05-09

CVE-2024-13859 - Buddyboss Platform Plugin

The Buddyboss Platform plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘bp_nouveau_ajax_media_save’ function in all versions up to, and including, 2.8.50 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Subscriber-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. The vulnerability was partially patched in version 2.8.41.

PLUGIN Buddyboss Platform

CVE-2024-13859

MEDIUM CVSS 6.4 2025-05-02
Threat Entry Updated 2025-05-22

CVE-2024-13858 - Buddyboss Platform Plugin

The BuddyBoss Platform plugin and BuddyBoss Theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘invitee_name’ parameter in all versions up to, and including, 2.8.50 and 2.8.41, respectively, due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Subscriber-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. The vulnerability was partially patched in the BuddyBoss Platform plugin in version 2.8.41.

PLUGIN Buddyboss Platform

CVE-2024-13858

MEDIUM CVSS 6.4 2025-05-02
Scroll to top