Blog

"Prevention is cheaper than a breach"

Live Vulnerability Intelligence

Threat Database

Search CVEs, inspect descriptions, and open detail pages with AI-assisted technical context.

Total1,249
Critical1,249
High0
Medium0
Reset
Showing 841-860 of 1249 records
Threat Entry Updated 2024-10-02

CVE-2024-7385 - Wordpress Simple Html Sitemap Plugin

The WordPress Simple HTML Sitemap plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, 3.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Administrator-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

PLUGIN Wordpress Simple Html Sitemap

CVE-2024-7385

CRITICAL CVSS 9.1 2024-09-25
Threat Entry Updated 2024-10-02

CVE-2024-8621 - Daily Prayer Time Plugin

The Daily Prayer Time plugin for WordPress is vulnerable to SQL Injection via the 'max_word' attribute of the 'quran_verse' shortcode in all versions up to, and including, 2024.08.26 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

PLUGIN Daily Prayer Time

CVE-2024-8621

CRITICAL CVSS 9.9 2024-09-25
Threat Entry Updated 2024-10-02

CVE-2024-8485 - Rest Api To Miniprogram Plugin

The REST API TO MiniProgram plugin for WordPress is vulnerable to privilege escalation via account takeovr in all versions up to, and including, 4.7.1 via the updateUserInfo() due to missing validation on the 'openid' user controlled key that determines what user will be updated. This makes it possible for unauthenticated attackers to update arbitrary user's accounts, including their email to a @weixin.com email, which can the be leveraged to reset the password of the user's account, including administrators.

PLUGIN Rest Api To Miniprogram

CVE-2024-8485

CRITICAL CVSS 9.8 2024-09-25
Threat Entry Updated 2025-09-26

CVE-2024-8436 - Wp Easy Gallery Plugin

The WP Easy Gallery – WordPress Gallery Plugin plugin for WordPress is vulnerable to SQL Injection via the 'edit_imageId' and 'edit_imageDelete' parameters in all versions up to, and including, 4.8.5 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with subscriber-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

PLUGIN Wp Easy Gallery

CVE-2024-8436

CRITICAL CVSS 9.9 2024-09-25
Threat Entry Updated 2024-09-26

CVE-2024-8791 - Charitable Plugin

The Donation Forms by Charitable – Donations Plugin & Fundraising Platform for WordPress plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.8.1.14. This is due to the plugin not properly verifying a user's identity when the ID parameter is supplied through the update_core_user() function. This makes it possible for unauthenticated attackers to update the email address and password of arbitrary user accounts, including administrators, which can then be used to log in to those user accounts.

PLUGIN Charitable

CVE-2024-8791

CRITICAL CVSS 9.8 2024-09-24
Threat Entry Updated 2024-09-26

CVE-2024-8671 - Wooevents Plugin

The WooEvents - Calendar and Event Booking plugin for WordPress is vulnerable to arbitrary file overwrite due to insufficient file path validation in the inc/barcode.php file in all versions up to, and including, 4.1.2. This makes it possible for unauthenticated attackers to overwrite arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php).

PLUGIN Wooevents

CVE-2024-8671

CRITICAL CVSS 9.1 2024-09-24
Threat Entry Updated 2024-09-26

CVE-2024-8624 - Wordpress Meta Data And Taxonomies Filter Plugin

The MDTF – Meta Data and Taxonomies Filter plugin for WordPress is vulnerable to SQL Injection via the 'meta_key' attribute of the 'mdf_select_title' shortcode in all versions up to, and including, 1.3.3.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

PLUGIN Wordpress Meta Data And Taxonomies Filter

CVE-2024-8624

CRITICAL CVSS 9.9 2024-09-24
Threat Entry Updated 2024-09-25

CVE-2024-8853 - Webo Facto Plugin

The Webo-facto plugin for WordPress is vulnerable to privilege escalation in versions up to, and including, 1.40 due to insufficient restriction on the 'doSsoAuthentification' function. This makes it possible for unauthenticated attackers to make themselves administrators by registering with a username that contains '-wfuser'.

PLUGIN Webo Facto

CVE-2024-8853

CRITICAL CVSS 9.8 2024-09-20
Threat Entry Updated 2024-09-27

CVE-2024-8669 - Backuply Plugin

The Backuply – Backup, Restore, Migrate and Clone plugin for WordPress is vulnerable to SQL Injection via the 'options' parameter passed to the backuply_wp_clone_sql() function in all versions up to, and including, 1.3.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with administrator-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

PLUGIN Backuply

CVE-2024-8669

CRITICAL CVSS 9.1 2024-09-14
Threat Entry Updated 2024-09-13

CVE-2024-8529 - Learnpress Plugin

The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to SQL Injection via the 'c_fields' parameter of the /wp-json/lp/v1/courses/archive-course REST API endpoint in all versions up to, and including, 4.2.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

PLUGIN Learnpress

CVE-2024-8529

CRITICAL CVSS 10.0 2024-09-12
Threat Entry Updated 2024-09-13

CVE-2024-8522 - Learnpress Plugin

The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to SQL Injection via the 'c_only_fields' parameter of the /wp-json/learnpress/v1/courses REST API endpoint in all versions up to, and including, 4.2.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

PLUGIN Learnpress

CVE-2024-8522

CRITICAL CVSS 10.0 2024-09-12
Threat Entry Updated 2024-09-26

CVE-2024-8277 - Woocommerce Photo Reviews Plugin

The WooCommerce Photo Reviews Premium plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.3.13.2. This is due to the plugin not properly validating what user transient is being used in the login() function and not properly verifying the user's identity. This makes it possible for unauthenticated attackers to log in as user that has dismissed an admin notice in the past 30 days, which is often an administrator. Alternatively, a user can log in as any user with any transient that has a…

PLUGIN Woocommerce Photo Reviews

CVE-2024-8277

CRITICAL CVSS 9.8 2024-09-11
Threat Entry Updated 2024-10-07

CVE-2024-6928 - Opti Marketing Plugin

The Opti Marketing WordPress plugin through 2.0.9 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

PLUGIN Opti Marketing

CVE-2024-6928

CRITICAL CVSS 9.8 2024-09-08
Threat Entry Updated 2024-09-11

CVE-2024-6924 - Before 1 Plugin

The TrueBooker WordPress plugin before 1.0.3 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

PLUGIN Before 1

CVE-2024-6924

CRITICAL CVSS 9.8 2024-09-08
Threat Entry Updated 2024-09-26

CVE-2024-7493 - Wpcom Member Plugin

The WPCOM Member plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.5.2.1. This is due to the plugin allowing arbitrary data to be passed to wp_insert_user() during registration. This makes it possible for unauthenticated attackers to update their role to that of an administrator during registration.

PLUGIN Wpcom Member

CVE-2024-7493

CRITICAL CVSS 9.8 2024-09-06
Threat Entry Updated 2024-09-12

CVE-2024-8292 - Wp Recall Plugin

The WP-Recall – Registration, Profile, Commerce & More plugin for WordPress is vulnerable to privilege escalation/account takeover in all versions up to, and including, 16.26.8. This is due to to plugin not properly verifying a user's identity during new order creation. This makes it possible for unauthenticated attackers to supply any email through the user_email field and update the password for that user during new order creation. This requires the commerce addon to be enabled in order to exploit.

PLUGIN Wp Recall

CVE-2024-8292

CRITICAL CVSS 9.8 2024-09-06
Threat Entry Updated 2024-09-05

CVE-2024-8289 - Multivendorx Plugin

The MultiVendorX – The Ultimate WooCommerce Multivendor Marketplace Solution plugin for WordPress is vulnerable to privilege escalation/de-escalation and account takeover due to an insufficient capability check on the update_item_permissions_check and create_item_permissions_check functions in all versions up to, and including, 4.2.0. This makes it possible for unauthenticated attackers to change the password of any user with the vendor role, create new users with the vendor role, and demote other users like administrators to the vendor role.

PLUGIN Multivendorx

CVE-2024-8289

CRITICAL CVSS 9.8 2024-09-04
Threat Entry Updated 2024-10-07

CVE-2024-6926 - Viral Signup Plugin

The Viral Signup WordPress plugin through 2.1 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

PLUGIN Viral Signup

CVE-2024-6926

CRITICAL CVSS 9.8 2024-09-04
Threat Entry Updated 2024-10-04

CVE-2024-7950 - Wp Job Portal Plugin

The WP Job Portal – A Complete Recruitment System for Company or Job Board website plugin for WordPress is vulnerable to Local File Inclusion, Arbitrary Settings Update, and User Creation in all versions up to, and including, 2.1.6 via several functions called by the 'checkFormRequest' function. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where…

PLUGIN Wp Job Portal

CVE-2024-7950

CRITICAL CVSS 9.8 2024-09-04
Threat Entry Updated 2024-09-03

CVE-2024-8016 - Events Calendar Pro Plugin

The Events Calendar Pro plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 7.0.2 via deserialization of untrusted input from the 'filters' parameter in widgets. This makes it possible for authenticated attackers, with administrator-level access and above, to inject a PHP Object. The additional presence of a POP chain allows attackers to execute code remotely. In certain configurations, this can be exploitable by lower level users. We confirmed that this plugin installed with Elementor makes it possible for users with contributor-level access and…

PLUGIN Events Calendar Pro

CVE-2024-8016

CRITICAL CVSS 9.1 2024-08-30
Scroll to top