All-in-One WP Migration |
Unauthenticated PHP Object Injection (RCE) |
DAP to Autoresponders Email Syncing |
Unauthenticated Information Exposure |
EZ SQL Reports Shortcode Widget and DB Backup |
Cross-Site Request Forgery (CSRF) to Remote Code Execution (RCE) |
EZ SQL Reports Shortcode Widget and DB Backup |
Cross-Site Request Forgery (CSRF) to SQL Injection (SQLi) |
EZ SQL Reports Shortcode Widget and DB Backup |
Cross-Site Request Forgery (CSRF) to Cross-Site Scripting (XSS) |
Import Export WordPress Users |
Server-Side Request Forgery (SSRF) from validate_file Function |
Import Export WordPress Users |
PHP Object Injection (RCE) from form_data Parameter |
Import Export WordPress Users |
Directory Traversal to Limited File Deletion (BAC) from admin_log_page Function |
Import Export WordPress Users |
Directory Traversal to Limited File Read (BAC) from download_file Function |
Order Export & Order Import for WooCommerce |
Server-Side Request Forgery (SSRF) from validate_file Function |
Order Export & Order Import for WooCommerce |
PHP Object Injection (RCE) from form_data Parameter |
Order Export & Order Import for WooCommerce |
Directory Traversal to Limited File Deletion (BAC) from admin_log_page Function |
Order Export & Order Import for WooCommerce |
Directory Traversal to Limited File Read (BAC) from download_file Function |
Product Import Export for WooCommerce |
Server-Side Request Forgery (SSRF) from validate_file Function |
Product Import Export for WooCommerce |
PHP Object Injection (RCE) from form_data Parameter |
Product Import Export for WooCommerce |
Directory Traversal to Limited File Read (BAC) from download_file Function |
WordPress Awesome Import & Export Plugin - Import & Export WordPress Data |
Missing Authorization (BAC) to SQL Execution (SQLi) and Privilege Escalation (BAC) |
WordPress Importer |
PHP Object Injection (RCE) |
WordPress SQL Backup |
Cross-Site Request Forgery (CSRF) |
WP Ultimate Exporter |
Unauthenticated PHP Object Injection (RCE) |