Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total1,249
Critical1,249
High0
Medium0
Reset
Showing 501-520 of 1249 records
Threat Entry Updated 2026-01-09

CVE-2025-12057 - Before 3 Plugin

The WavePlayer WordPress plugin before 3.8.0 does not have authorization in an AJAX action as well as does not validate the file to be copied locally, allowing unauthenticated users to upload arbitrary file on the server and lead to RCE

PLUGIN Before 3

CVE-2025-12057

CRITICAL CVSS 9.8 2025-11-19
Threat Entry Updated 2025-11-18

CVE-2025-9501 - W3 Total Cache Plugin

The W3 Total Cache WordPress plugin before 2.8.13 is vulnerable to command injection via the _parse_dynamic_mfunc function, allowing unauthenticated users to execute PHP commands by submitting a comment with a malicious payload to a post.

PLUGIN W3 Total Cache

CVE-2025-9501

CRITICAL CVSS 9.0 2025-11-17
Threat Entry Updated 2025-11-12

CVE-2025-12539 - Web Performance Plugin

The TNC Toolbox: Web Performance plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.2. This is due to the plugin storing cPanel API credentials (hostname, username, and API key) in files within the web-accessible wp-content directory without adequate protection in the "Tnc_Wp_Toolbox_Settings::save_settings" function. This makes it possible for unauthenticated attackers to retrieve these credentials and use them to interact with the cPanel API, which can lead to arbitrary file uploads, remote code execution, and full compromise of the hosting environment.

PLUGIN Web Performance

CVE-2025-12539

CRITICAL CVSS 10.0 2025-11-11
Threat Entry Updated 2025-11-12

CVE-2025-12813 - Holiday Class Post Calendar Plugin

The Holiday class post calendar plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 7.1 via the 'contents' parameter. This is due to a lack of sanitization of user-supplied data when creating a cache file. This makes it possible for unauthenticated attackers to execute code on the server.

PLUGIN Holiday Class Post Calendar

CVE-2025-12813

CRITICAL CVSS 9.8 2025-11-11
Threat Entry Updated 2025-11-12

CVE-2025-11457 - Easycommerce Plugin

The EasyCommerce – AI-Powered, Fast & Beautiful WordPress Ecommerce Plugin plugin for WordPress is vulnerable to Privilege Escalation in versions 0.9.0-beta2 to 1.5.0. This is due to the /easycommerce/v1/orders REST API endpoint not properly restricting the ability for users to select roles during registration. This makes it possible for unauthenticated attackers to gain administrator-level access to a vulnerable site.

PLUGIN Easycommerce

CVE-2025-11457

CRITICAL CVSS 9.8 2025-11-11
Threat Entry Updated 2025-11-12

CVE-2025-11170 - Cpi Wp Migration Plugin

The WP移行専用プラグイン for CPI plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the Cpiwm_Import_Controller::import function in all versions up to, and including, 1.0.2. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

PLUGIN Cpi Wp Migration

CVE-2025-11170

CRITICAL CVSS 9.8 2025-11-11
Threat Entry Updated 2025-11-12

CVE-2025-12352 - Gravity Forms Plugin

The Gravity Forms plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the copy_post_image() function in all versions up to, and including, 2.9.20. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible. This only impacts sites that have allow_url_fopen set to `On`, the post creation form enabled along with a file upload field for the post

PLUGIN Gravity Forms

CVE-2025-12352

CRITICAL CVSS 9.8 2025-11-07
Threat Entry Updated 2026-01-20

CVE-2025-48089 - Education WordPress Theme | HiStudy

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Rainbow-Themes Education WordPress Theme | HiStudy histudy allows SQL Injection.This issue affects Education WordPress Theme | HiStudy: from n/a through < 3.1.0.

THEME Education WordPress Theme | HiStudy

CVE-2025-48089

CRITICAL CVSS 9.8 2025-11-06
Threat Entry Updated 2025-11-06

CVE-2025-12674 - Kiotvietsync Plugin

The KiotViet Sync plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the create_media() function in all versions up to, and including, 1.8.5. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

PLUGIN Kiotvietsync

CVE-2025-12674

CRITICAL CVSS 9.8 2025-11-05
Threat Entry Updated 2025-11-06

CVE-2025-11749 - Ai Engine Plugin

The AI Engine plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.1.3 via the /mcp/v1/ REST API endpoint that exposes the 'Bearer Token' value when 'No-Auth URL' is enabled. This makes it possible for unauthenticated attackers to extract the bearer token, which can be used to gain access to a valid session and perform many actions like creating a new administrator account, leading to privilege escalation.

PLUGIN Ai Engine

CVE-2025-11749

CRITICAL CVSS 9.8 2025-11-05
Threat Entry Updated 2025-11-04

CVE-2025-12682 - Easy Upload Files During Checkout Plugin

The Easy Upload Files During Checkout plugin for WordPress is vulnerable to arbitrary JavaScript file uploads due to missing file type validation in the 'file_during_checkout' function in all versions up to, and including, 2.9.8. This makes it possible for unauthenticated attackers to upload arbitrary JavaScript files on the affected site's server which may make remote code execution possible.

PLUGIN Easy Upload Files During Checkout

CVE-2025-12682

CRITICAL CVSS 9.8 2025-11-04
Threat Entry Updated 2025-11-26

CVE-2025-12493 - Shoplentor Plugin

The ShopLentor – WooCommerce Builder for Elementor & Gutenberg +21 Modules – All in One Solution (formerly WooLentor) plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.2.5 via the 'load_template' function. This makes it possible for unauthenticated attackers to include and execute arbitrary .php files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where .php file types can be uploaded…

PLUGIN Shoplentor

CVE-2025-12493

CRITICAL CVSS 9.8 2025-11-04
Threat Entry Updated 2025-11-04

CVE-2025-12158 - Simple User Capabilities Plugin

The Simple User Capabilities plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on the suc_submit_capabilities() function in all versions up to, and including, 1.0. This makes it possible for unauthenticated attackers to elevate the role of any user account to administrator.

PLUGIN Simple User Capabilities

CVE-2025-12158

CRITICAL CVSS 9.8 2025-11-04
Threat Entry Updated 2025-11-04

CVE-2025-11008 - Ce21 Suite Plugin

The CE21 Suite plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.3.1 via the log file. This makes it possible for unauthenticated attackers to extract sensitive data including authentication credentials, which can be used to log in as other users as long as they have used the plugin's custom authentication feature before. This may include administrators, which makes a complete site takeover possible.

PLUGIN Ce21 Suite

CVE-2025-11008

CRITICAL CVSS 9.8 2025-11-04
Threat Entry Updated 2025-11-04

CVE-2025-11007 - Ce21 Suite Plugin

The CE21 Suite plugin for WordPress is vulnerable to unauthorized plugin settings update due to a missing capability check on the wp_ajax_nopriv_ce21_single_sign_on_save_api_settings AJAX action in versions 2.2.1 to 2.3.1. This makes it possible for unauthenticated attackers to update the plugin's API settings including a secret key used for authentication. This allows unauthenticated attackers to create new admin accounts on an affected site.

PLUGIN Ce21 Suite

CVE-2025-11007

CRITICAL CVSS 9.8 2025-11-04
Threat Entry Updated 2025-11-04

CVE-2025-8900 - Doccure Core Plugin

The Doccure Core plugin for WordPress is vulnerable to privilege escalation in versions up to, and excluding, 1.5.4. This is due to the plugin allowing users who are registering new accounts to set their own role or by supplying 'user_type' field. This makes it possible for unauthenticated attackers to gain elevated privileges by creating an account with the administrator role.

PLUGIN Doccure Core

CVE-2025-8900

CRITICAL CVSS 9.8 2025-11-03
Threat Entry Updated 2025-11-04

CVE-2025-11499 - Tablesome Plugin

The Tablesome Table – Contact Form DB – WPForms, CF7, Gravity, Forminator, Fluent plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the set_featured_image_from_external_url() function in all versions up to, and including, 1.1.32. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible in configurations where unauthenticated users have been provided with a method for adding featured images, and the workflow trigger is created.

PLUGIN Tablesome

CVE-2025-11499

CRITICAL CVSS 9.8 2025-11-01
Threat Entry Updated 2025-11-04

CVE-2025-11833 - Post Smtp Plugin

The Post SMTP – Complete SMTP Solution with Logs, Alerts, Backup SMTP & Mobile App plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the __construct function in all versions up to, and including, 3.6.0. This makes it possible for unauthenticated attackers to read arbitrary logged emails sent through the Post SMTP plugin, including password reset emails containing password reset links, which can lead to account takeover.

PLUGIN Post Smtp

CVE-2025-11833

CRITICAL CVSS 9.8 2025-11-01
Threat Entry Updated 2025-11-04

CVE-2025-8489 - King Addons Plugin

The King Addons for Elementor – Free Elements, Widgets, Templates, and Features for Elementor plugin for WordPress is vulnerable to privilege escalation in versions 24.12.92 to 51.1.14 . This is due to the plugin not properly restricting the roles that users can register with. This makes it possible for unauthenticated attackers to register with administrator-level user accounts.

PLUGIN King Addons

CVE-2025-8489

CRITICAL CVSS 9.8 2025-10-31
Threat Entry Updated 2025-11-04

CVE-2025-5397 - Noo Jobmonster Theme

The Noo JobMonster theme for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 4.8.1. This is due to the check_login() function not properly verifying a user's identity prior to successfully authenticating them This makes it possible for unauthenticated attackers to bypass standard authentication and access administrative user accounts. Please note social login needs to be enabled in order for a site to be impacted by this vulnerability.

THEME Noo Jobmonster

CVE-2025-5397

CRITICAL CVSS 9.8 2025-10-31
Scroll to top