Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total1,249
Critical1,249
High0
Medium0
Reset
Showing 601-620 of 1249 records
Threat Entry Updated 2025-07-15

CVE-2025-5392 - Gb Forms Db Plugin

The GB Forms DB plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.0.2 via the gbfdb_talk_to_front() function. This is due to the function accepting user input and then passing that through call_user_func(). This makes it possible for unauthenticated attackers to execute code on the server which can be leverage to inject backdoors or create new administrative user accounts to name a few things.

PLUGIN Gb Forms Db

CVE-2025-5392

CRITICAL CVSS 9.8 2025-07-11
Threat Entry Updated 2025-07-15

CVE-2025-7401 - Restriction For Wordpress Plugin

The Premium Age Verification / Restriction for WordPress plugin for WordPress is vulnerable to arbitrary file read and write due to the existence of an insufficiently protected remote support functionality in remote_tunnel.php in all versions up to, and including, 3.0.2. This makes it possible for unauthenticated attackers to read from or write to arbitrary files on the affected site's server which may make the exposure of sensitive information or remote code execution possible.

PLUGIN Restriction For Wordpress

CVE-2025-7401

CRITICAL CVSS 9.8 2025-07-11
Threat Entry Updated 2025-07-10

CVE-2025-4606 - Saas Wordpress Theme

The Sala - Startup & SaaS WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.1.4. This is due to the theme not properly validating a user's identity prior to updating their details like password. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.

THEME Saas Wordpress Theme

CVE-2025-4606

CRITICAL CVSS 9.8 2025-07-09
Threat Entry Updated 2025-07-10

CVE-2025-34077 - Pie Register Plugin

An authentication bypass vulnerability exists in the WordPress Pie Register plugin ≤ 3.7.1.4 that allows unauthenticated attackers to impersonate arbitrary users by submitting a crafted POST request to the login endpoint. By setting social_site=true and manipulating the user_id_social_site parameter, an attacker can generate a valid WordPress session cookie for any user ID, including administrators. Once authenticated, the attacker may exploit plugin upload functionality to install a malicious plugin containing arbitrary PHP code, resulting in remote code execution on the underlying server.

PLUGIN Pie Register

CVE-2025-34077

CRITICAL CVSS 10.0 2025-07-09
Threat Entry Updated 2025-07-14

CVE-2025-4855 - Support Board Plugin

The Support Board plugin for WordPress is vulnerable to unauthorized access/modification/deletion of data due to use of hardcoded default secrets in the sb_encryption() function in all versions up to, and including, 3.8.0. This makes it possible for unauthenticated attackers to bypass authorization and execute arbitrary AJAX actions defined in the sb_ajax_execute() function. An attacker can use this vulnerability to exploit CVE-2025-4828 and various other functions unauthenticated.

PLUGIN Support Board

CVE-2025-4855

CRITICAL CVSS 9.8 2025-07-09
Threat Entry Updated 2025-07-14

CVE-2025-4828 - Support Board Plugin

The Support Board plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the sb_file_delete function in all versions up to, and including, 3.8.0. This makes it possible for attackers to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php). An attacker can leverage CVE-2025-4855 vulnerability to exploit this vulnerability unauthenticated.

PLUGIN Support Board

CVE-2025-4828

CRITICAL CVSS 9.8 2025-07-09
Threat Entry Updated 2025-07-03

CVE-2024-13786 - Education Theme

The education theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.6.10 via deserialization of untrusted input in the 'themerex_callback_view_more_posts' function. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable software, which means this vulnerability has no impact unless another plugin or theme containing a POP chain is installed on the site. If a POP chain is present via an additional plugin or theme installed on the target system, it may…

THEME Education

CVE-2024-13786

CRITICAL CVSS 9.8 2025-07-02
Threat Entry Updated 2025-07-03

CVE-2025-5746 - Woocommerce Plugin

The Drag and Drop Multiple File Upload (Pro) - WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the dnd_upload_cf7_upload_chunks() function in version 5.0 - 5.0.5 (when bundled with the PrintSpace theme) and all versions up to, and including, 1.7.1 (in the standalone version). This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible. The execution of PHP is disabled via a .htaccess file but is still possible in…

PLUGIN Woocommerce

CVE-2025-5746

CRITICAL CVSS 9.8 2025-07-02
Threat Entry Updated 2025-07-08

CVE-2025-4689 - Ads Pro Plugin

The Ads Pro Plugin - Multi-Purpose WordPress Advertising Manager plugin for WordPress is vulnerable to Local File Inclusion which leads to Remote Code Execution in all versions up to, and including, 4.89. This is due to the presence of a SQL Injection vulnerability and Local File Inclusion vulnerability that can be chained with an image upload. This makes it possible for unauthenticated attackers to execute code on the server upload image files on the server than can be fetched via a SQL injection vulnerability, and ultimately executed as PHP code…

PLUGIN Ads Pro

CVE-2025-4689

CRITICAL CVSS 9.8 2025-07-02
Threat Entry Updated 2025-07-03

CVE-2025-6934 - Opal Estate Pro Plugin

The Opal Estate Pro – Property Management and Submission plugin for WordPress, used by the FullHouse - Real Estate Responsive WordPress Theme, is vulnerable to privilege escalation via in all versions up to, and including, 1.7.5. This is due to a lack of role restriction during registration in the 'on_regiser_user' function. This makes it possible for unauthenticated attackers to arbitrarily choose the role, including the Administrator role, assigned when registering.

PLUGIN Opal Estate Pro

CVE-2025-6934

CRITICAL CVSS 9.8 2025-07-01
Threat Entry Updated 2025-07-07

CVE-2025-5304 - Pt Project Notebooks Plugin

The PT Project Notebooks plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization in the wpnb_pto_new_users_add() function in versions 1.0.0 through 1.1.3. This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator.

PLUGIN Pt Project Notebooks

CVE-2025-5304

CRITICAL CVSS 9.8 2025-06-28
Threat Entry Updated 2025-06-30

CVE-2025-53260 - Upload Of File With Dangerous Type Vulnerability In Getredhawkstudio File Manager Plugin

Unrestricted Upload of File with Dangerous Type vulnerability in getredhawkstudio File Manager Plugin For Wordpress allows Upload a Web Shell to a Web Server. This issue affects File Manager Plugin For Wordpress: from n/a through 7.5.

PLUGIN Upload Of File With Dangerous Type Vulnerability In Getredhawkstudio File Manager

CVE-2025-53260

CRITICAL CVSS 9.1 2025-06-27
Threat Entry Updated 2025-06-30

CVE-2024-12827 - Listing Wordpress Theme

The DWT - Directory & Listing WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.3.6. This is due to the plugin not properly checking for an empty token value prior to resetting a user's password through the dwt_listing_reset_password() function. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.

THEME Listing Wordpress Theme

CVE-2024-12827

CRITICAL CVSS 9.8 2025-06-27
Threat Entry Updated 2025-07-02

CVE-2025-6688 - Simple Payment Plugin

The Simple Payment plugin for WordPress is vulnerable to Authentication Bypass in versions 1.3.6 to 2.3.8. This is due to the plugin not properly verifying a user's identity prior to logging them in through the create_user() function. This makes it possible for unauthenticated attackers to log in as administrative users.

PLUGIN Simple Payment

CVE-2025-6688

CRITICAL CVSS 9.8 2025-06-27
Threat Entry Updated 2025-07-09

CVE-2025-4334 - Simple User Registration Plugin

The Simple User Registration plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 6.3. This is due to insufficient restrictions on user meta values that can be supplied during registration. This makes it possible for unauthenticated attackers to register as an administrator.

PLUGIN Simple User Registration

CVE-2025-4334

CRITICAL CVSS 9.8 2025-06-26
Threat Entry Updated 2025-07-09

CVE-2025-1562 - Funnelkit Automations Plugin

The Recover WooCommerce Cart Abandonment, Newsletter, Email Marketing, Marketing Automation By FunnelKit plugin for WordPress is vulnerable to unauthorized arbitrary plugin installation due to a missing capability check on the install_or_activate_addon_plugins() function and a weak nonce hash in all versions up to, and including, 3.5.3. This makes it possible for unauthenticated attackers to install arbitrary plugins on the site that can be leveraged to further infect a vulnerable site.

PLUGIN Funnelkit Automations

CVE-2025-1562

CRITICAL CVSS 9.8 2025-06-18
Threat Entry Updated 2025-06-16

CVE-2025-6065 - Image Resizer On The Fly Plugin

The Image Resizer On The Fly plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the 'delete' task in all versions up to, and including, 1.1. This makes it possible for unauthenticated attackers to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php).

PLUGIN Image Resizer On The Fly

CVE-2025-6065

CRITICAL CVSS 9.1 2025-06-14
Threat Entry Updated 2025-06-16

CVE-2025-5288 - Import Export With Custom Rest Api Plugin

The REST API | Custom API Generator For Cross Platform And Import Export In WP plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on the process_handler() function in versions 1.0.0 to 2.0.3. This makes it possible for unauthenticated attackers to POST an arbitrary import_api URL, import specially crafted JSON, and thereby create a new user with full Administrator privileges.

PLUGIN Import Export With Custom Rest Api

CVE-2025-5288

CRITICAL CVSS 9.8 2025-06-13
Threat Entry Updated 2025-07-10

CVE-2025-4973 - Workreap Plugin

The Workreap plugin for WordPress, used by the Workreap - Freelance Marketplace WordPress Theme, is vulnerable to authentication bypass in all versions up to, and including, 3.3.1. This is due to the plugin not properly verifying a user's identity prior to logging them in when verifying an account with an email address. This makes it possible for unauthenticated attackers to log in as registered users, including administrators, if they know user's email address. This is only exploitable fi the user's confirmation_key has not already been set by the plugin.

PLUGIN Workreap

CVE-2025-4973

CRITICAL CVSS 9.8 2025-06-12
Threat Entry Updated 2025-06-12

CVE-2025-31396 - Allows Object Injection Theme

Deserialization of Untrusted Data vulnerability in themeton FLAP - Business WordPress Theme allows Object Injection. This issue affects FLAP - Business WordPress Theme: from n/a through 1.5.

THEME Allows Object Injection

CVE-2025-31396

CRITICAL CVSS 9.8 2025-06-09
Scroll to top