Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total1,249
Critical1,249
High0
Medium0
Reset
Showing 641-660 of 1249 records
Threat Entry Updated 2025-05-19

CVE-2025-4389 - Crawlomatic Multipage Scraper Post Generator Plugin

The Crawlomatic Multipage Scraper Post Generator plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the crawlomatic_generate_featured_image() function in all versions up to, and including, 2.6.8.1. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

PLUGIN Crawlomatic Multipage Scraper Post Generator

CVE-2025-4389

CRITICAL CVSS 9.8 2025-05-17
Threat Entry Updated 2025-05-28

CVE-2024-8673 - Z Downloads Plugin

The Z-Downloads WordPress plugin before 1.11.7 does not properly validate uploaded files allowing for the uploading of SVGs containing malicious JavaScript.

PLUGIN Z Downloads

CVE-2024-8673

CRITICAL CVSS 9.1 2025-05-15
Threat Entry Updated 2025-06-05

CVE-2024-6809 - Simple Video Directory Plugin

The Simple Video Directory WordPress plugin before 1.4.3 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

PLUGIN Simple Video Directory

CVE-2024-6809

CRITICAL CVSS 9.8 2025-05-15
Threat Entry Updated 2025-06-11

CVE-2024-6159 - Push Notification For Post And Buddypress Plugin

The Push Notification for Post and BuddyPress WordPress plugin before 1.9.4 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

PLUGIN Push Notification For Post And Buddypress

CVE-2024-6159

CRITICAL CVSS 9.8 2025-05-15
Threat Entry Updated 2025-05-16

CVE-2025-4564 - Wp Ticketbai Plugin

The TicketBAI Facturas para WooCommerce plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation via the 'delpdf' action in all versions up to, and including, 3.18. This makes it possible for unauthenticated attackers to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php).

PLUGIN Wp Ticketbai

CVE-2025-4564

CRITICAL CVSS 9.8 2025-05-15
Threat Entry Updated 2025-05-16

CVE-2025-3917 - Baiduseo Plugin

The 百度站长SEO合集(支持百度/神马/Bing/头条推送) plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the download_remote_image_to_media_library function in all versions up to, and including, 2.0.6. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

PLUGIN Baiduseo

CVE-2025-3917

CRITICAL CVSS 9.8 2025-05-15
Threat Entry Updated 2025-08-12

CVE-2025-3623 - Uncanny Automator Plugin

The Uncanny Automator plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 6.4.0.1 via deserialization of untrusted input in the automator_api_decode_message() function. This makes it possible for unauthenticated to inject a PHP Object. The additional presence of a POP chain allows attackers to delete arbitrary files.

PLUGIN Uncanny Automator

CVE-2025-3623

CRITICAL CVSS 9.1 2025-05-14
Threat Entry Updated 2025-05-12

CVE-2025-4403 - Drag And Drop Multiple File Upload For Woocommerce Plugin

The Drag and Drop Multiple File Upload for WooCommerce plugin for WordPress is vulnerable to arbitrary file uploads in all versions up to, and including, 1.1.6 due to accepting a user‐supplied supported_type string and the uploaded filename without enforcing real extension or MIME checks within the upload() function. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

PLUGIN Drag And Drop Multiple File Upload For Woocommerce

CVE-2025-4403

CRITICAL CVSS 9.8 2025-05-09
Threat Entry Updated 2025-05-12

CVE-2025-3605 - Frontend Login And Registration Blocks Plugin

The Frontend Login and Registration Blocks plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.0.7. This is due to the plugin not properly validating a user's identity prior to updating their details like email via the flr_blocks_user_settings_handle_ajax_callback() function. This makes it possible for unauthenticated attackers to change arbitrary user's email addresses, including administrators, and leverage that to reset the user's password and gain access to their account.

PLUGIN Frontend Login And Registration Blocks

CVE-2025-3605

CRITICAL CVSS 9.8 2025-05-09
Threat Entry Updated 2025-05-12

CVE-2024-11617 - Envolve Plugin

The Envolve Plugin plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'zetra_languageUpload' and 'zetra_fontsUpload' functions in all versions up to, and including, 1.0. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

PLUGIN Envolve

CVE-2024-11617

CRITICAL CVSS 9.8 2025-05-09
Threat Entry Updated 2025-06-27

CVE-2025-3811 - Wpbookit Plugin

The WPBookit plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.0.2. This is due to the plugin not properly validating a user's identity prior to updating their details like email through the edit_newdata_customer_callback() function. This makes it possible for unauthenticated attackers to change arbitrary user's email addresses, including administrators, and leverage that to reset the user's password and gain access to their account.

PLUGIN Wpbookit

CVE-2025-3811

CRITICAL CVSS 9.8 2025-05-09
Threat Entry Updated 2025-06-27

CVE-2025-3810 - Wpbookit Plugin

The WPBookit plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.0.2. This is due to the plugin not properly validating a user's identity prior to updating their details like password and email through the edit_profile_data() function. This makes it possible for unauthenticated attackers to change arbitrary user's email addresses and passwords, including administrators, and leverage that to gain access to their account.

PLUGIN Wpbookit

CVE-2025-3810

CRITICAL CVSS 9.8 2025-05-09
Threat Entry Updated 2025-05-07

CVE-2025-4104 - Frontend Dashboard Plugin

The Frontend Dashboard plugin for WordPress is vulnerable to Privilege Escalation due to a missing capability check on the fed_wp_ajax_fed_login_form_post() function in versions 1.0 to 2.2.6. This makes it possible for unauthenticated attackers to reset the administrator’s email and password, and elevate their privileges to that of an administrator.

PLUGIN Frontend Dashboard

CVE-2025-4104

CRITICAL CVSS 9.8 2025-05-07
Threat Entry Updated 2025-05-07

CVE-2025-3844 - Peprodev Ups Plugin

The PeproDev Ultimate Profile Solutions plugin for WordPress is vulnerable to Authentication Bypass in versions 1.9.1 to 7.5.2. This is due to handel_ajax_req() function not having proper restrictions on the change_user_meta functionality that makes it possible to set a OTP code and subsequently log in with that OTP code. This makes it possible for unauthenticated attackers to login as other users on the site, including administrators.

PLUGIN Peprodev Ups

CVE-2025-3844

CRITICAL CVSS 9.8 2025-05-07
Threat Entry Updated 2025-05-07

CVE-2025-0855 - Pgs Core Plugin

The PGS Core plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 5.8.0 via deserialization of untrusted input in the 'import_header' function. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable software. If a POP chain is present via an additional plugin or theme installed on the target system, it could allow the attacker to delete arbitrary files, retrieve sensitive data, or execute code.

PLUGIN Pgs Core

CVE-2025-0855

CRITICAL CVSS 9.8 2025-05-06
Threat Entry Updated 2025-05-28

CVE-2025-1909 - Buddyboss Platform Plugin

The BuddyBoss Platform Pro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.7.01. This is due to insufficient verification on the user being supplied during the Apple OAuth authenticate request through the plugin. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the email.

PLUGIN Buddyboss Platform

CVE-2025-1909

CRITICAL CVSS 9.8 2025-05-05
Threat Entry Updated 2025-05-05

CVE-2025-3918 - Job Listings Plugin

The Job Listings plugin for WordPress is vulnerable to Privilege Escalation due to improper authorization within the register_action() function in versions 0.1 to 0.1.1. The plugin’s registration handler reads the client-supplied $_POST['user_role'] and passes it directly to wp_insert_user() without restricting to a safe set of roles. This makes it possible for unauthenticated attackers to elevate their privileges to that of an administrator.

PLUGIN Job Listings

CVE-2025-3918

CRITICAL CVSS 9.8 2025-05-03
Threat Entry Updated 2025-05-02

CVE-2025-3746 - Otp Less One Tap Sign In Plugin

The OTP-less one tap Sign in plugin for WordPress is vulnerable to privilege escalation via account takeover in versions 2.0.14 to 2.0.59. This is due to the plugin not properly validating a user's identity prior to updating their details, like email. This makes it possible for unauthenticated attackers to change arbitrary users' email addresses, including administrators, and leverage that to reset the user's password and gain access to their account. Additionally, the plugin returns authentication cookies in the response, which can be used to access the account directly.

PLUGIN Otp Less One Tap Sign In

CVE-2025-3746

CRITICAL CVSS 9.8 2025-05-02
Threat Entry Updated 2025-05-14

CVE-2025-2907 - Order Delivery Date Plugin

The Order Delivery Date WordPress plugin before 12.3.1 does not have authorization and CSRF checks when importing settings. Furthermore it also lacks proper checks to only update options relevant to the Order Delivery Date WordPress plugin before 12.3.1. This leads to attackers being able to modify the default_user_role to administrator and users_can_register, allowing them to register as an administrator of the site for complete site takeover.

PLUGIN Order Delivery Date

CVE-2025-2907

CRITICAL CVSS 9.8 2025-04-26
Threat Entry Updated 2025-04-29

CVE-2025-2470 - Service Finder Bookings Plugin

The Service Finder Bookings plugin for WordPress, used by the Service Finder - Directory and Job Board WordPress Theme, is vulnerable to privilege escalation in all versions up to, and including, 5.1. This is due to a lack of restriction on user role in the 'nsl_registration_store_extra_input' function. This makes it possible for unauthenticated attackers to register an account on the site with an arbitrary role, including Administrator, when registering via a social login. The Nextend Social Login plugin must be installed and configured to exploit the vulnerability.

PLUGIN Service Finder Bookings

CVE-2025-2470

CRITICAL CVSS 9.8 2025-04-25
Scroll to top