Activity Log |
Unauthenticated Cross-Site Scripting (XSS) from Event Context |
Admin and Site Enhancements (ASE) |
Cross-Site Scripting (XSS) from SVG |
Admin SMS Alert |
Cross-Site Request Forgery (CSRF) to Cross-Site Scripting (XSS) |
Advanced Video Player with Analytics |
Cross-Site Scripting (XSS) |
Alert Me! |
Cross-Site Scripting (XSS) |
CM Email Registration Blacklist and Whitelist |
Cross-Site Scripting (XSS) |
Copy Anything to Clipboard |
Cross-Site Scripting (XSS) |
Debug Tool |
Remote Code Execution (RCE) |
Debug Tool |
Unauthenticated Arbitrary File Creation (BAC) |
Disable Admin Notices individually |
Cross-Site Request Forgery (CSRF) |
Don't Break The Code |
Cross-Site Scripting (XSS) |
Download Increase Maximum Upload File Size | Increase Execution Time |
Full Path Private Data Disclosure |
FluentSMTP |
Unauthenticated PHP Object Injection (BAC) |
Hacklog DownloadManager |
Cross-Site Request Forgery (CSRF) to Arbitrary File Upload (BAC) |
HIPAAtizer |
Cross-Site Scripting (XSS) |
Hotlink2Watermark |
Cross-Site Request Forgery (CSRF) to Cross-Site Scripting (XSS) |
IA Map Analytics Basic |
Cross-Site Scripting (XSS) |
IceStats |
Cross-Site Request Forgery (CSRF) to Cross-Site Scripting (XSS) |
NIX Anti-Spam Light |
PHP Object Injection (BAC) |
Post SMTP |
SQL Injection (SQLi) |
Provide Forex Signals |
Cross-Site Scripting (XSS) |
PublishPress Revisions |
Missing Authorization (BAC) to Private Information Exposure |
Push Notifications for WordPress by PushAssist |
Arbitrary File Upload (BAC) |
Subaccounts for WooCommerce |
Cross-Site Scripting (XSS) |
Third Party Cookie Eraser |
Cross-Site Request Forgery (CSRF) to Cross-Site Scripting (XSS) |
UPDATE NOTIFICATIONS |
Cross-Site Request Forgery (CSRF) to Cross-Site Scripting (XSS) |
WIP Incoming Lite |
Cross-Site Request Forgery (CSRF) to Cross-Site Scripting (XSS) |
WooCommerce Price Alert |
Cross-Site Scripting (XSS) |
WooCommerce Report |
Cross-Site Request Forgery (CSRF) to Arbitrary Options Update (BAC) |
WordPress Announcement & Notification Banner Plugin – Bulletin |
Cross-Site Scripting (XSS) |
WordPress GDPR & CCPA |
Missing Authorization (BAC) to Unauthenticated Arbitrary User Deletion (BAC) |
WordPress GDPR & CCPA |
Unauthenticated Cross-Site Scripting (XSS) |
WP Activity Log |
Unauthenticated Cross-Site Scripting (XSS) |
WP Log Viewer |
Missing Authorization (BAC) |
WP Revisions Manager |
Cross-Site Request Forgery (CSRF) |