CVE Feed

    Dashboard / CVE

    4.8
    Medium

    CVE-2023-3647

    Last Modified: 20 Jun 2025

    The IURNY by INDIGITALL WordPress plugin before 3.2.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

    Published: 16 Jan 2024
    5.4
    Medium

    CVE-2022-3194

    Last Modified: 24 Feb 2026

    The Dokan WordPress plugin before 3.6.4 allows vendors to inject arbitrary javascript in product reviews, which may allow them to run stored XSS attacks against other users like site administrators.

    Published: 16 Jan 2024
    4.8
    Medium

    CVE-2022-3829

    Last Modified: 20 Jun 2025

    The Font Awesome 4 Menus WordPress plugin through 4.7.0 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

    Published: 16 Jan 2024
    5.4
    Medium

    CVE-2022-3739

    Last Modified: 20 Jun 2025

    The WP Best Quiz WordPress plugin through 1.0 does not sanitize and escape some parameters, which could allow users with a role as low as Author to perform Cross-Site Scripting attacks.

    Published: 16 Jan 2024
    7.8
    High

    CVE-2022-3604

    Last Modified: 11 Jun 2025

    The Contact Form Entries WordPress plugin before 1.3.0 does not validate data when its output in a CSV file, which could lead to CSV injection.

    Published: 16 Jan 2024
    6.1
    Medium

    CVE-2022-1618

    Last Modified: 21 Nov 2024

    The Coru LFMember WordPress plugin through 1.0.2 does not have CSRF check in place when adding a new game, and is lacking sanitisation as well as escaping in their settings, allowing attacker to make a logged in admin add an arbitrary game with XSS payloads

    Published: 16 Jan 2024
    6.1
    Medium

    CVE-2022-1617

    Last Modified: 11 Jun 2025

    The WP-Invoice WordPress plugin through 4.3.1 does not have CSRF check in place when updating its settings, and is lacking sanitisation as well as escaping in some of them, allowing attacker to make a logged in admin change them and add XSS payload in them

    Published: 16 Jan 2024
    4.3
    Medium

    CVE-2022-0775

    Last Modified: 11 Jun 2025

    The WooCommerce WordPress plugin before 6.2.1 does not have proper authorisation check when deleting reviews, which could allow any authenticated users, such as subscriber to delete arbitrary comment

    Published: 16 Jan 2024
    5.3
    Medium

    CVE-2021-4227

    Last Modified: 2 Jun 2025

    The ark-commenteditor WordPress plugin through 2.15.6 does not properly sanitise or encode the comments when in Source editor, allowing attackers to inject an iFrame in the page and thus load arbitrary content from any page to the comment section

    Published: 16 Jan 2024
    9.8
    Critical

    CVE-2022-1609

    Last Modified: 2 Jun 2025

    The School Management WordPress plugin before 9.9.7 contains an obfuscated backdoor injected in it's license checking code that registers a REST API handler, allowing an unauthenticated attacker to execute arbitrary PHP code on the site.

    Published: 16 Jan 2024
    4.3
    Medium

    CVE-2022-1760

    Last Modified: 2 Jun 2025

    The Core Control WordPress plugin through 1.2.1 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack

    Published: 16 Jan 2024
    4.8
    Medium

    CVE-2022-23179

    Last Modified: 9 Jan 2026

    The Contact Form & Lead Form Elementor Builder WordPress plugin before 1.7.0 does not escape some of its form fields before outputting them in attributes, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

    Published: 16 Jan 2024
    4.3
    Medium

    CVE-2022-23180

    Last Modified: 16 Jun 2025

    The Contact Form & Lead Form Elementor Builder WordPress plugin before 1.7.4 doesn't have authorisation and nonce checks, which could allow any authenticated users, such as subscriber to update and change various settings

    Published: 16 Jan 2024
    6.1
    Medium

    CVE-2022-0402

    Last Modified: 20 Jun 2025

    The Super Forms - Drag & Drop Form Builder WordPress plugin before 6.0.4 does not escape the bob_czy_panstwa_sprawa_zostala_rozwiazana parameter before outputting it back in an attribute via the super_language_switcher AJAX action, leading to a Reflected Cross-Site Scripting. The action is also lacking CSRF, making the attack easier to perform against any user.

    Published: 16 Jan 2024
    8.1
    High

    CVE-2022-3899

    Last Modified: 2 Jun 2025

    The 3dprint WordPress plugin before 3.5.6.9 does not protect against CSRF attacks in the modified version of Tiny File Manager included with the plugin, allowing an attacker to craft a malicious request that will delete any number of files or directories on the target server by tricking a logged in admin into submitting a form.

    Published: 16 Jan 2024
    7.2
    High

    CVE-2022-3764

    Last Modified: 20 Jun 2025

    The plugin does not filter the "delete_entries" parameter from user requests, leading to an SQL Injection vulnerability.

    Published: 16 Jan 2024
    4.8
    Medium

    CVE-2022-3836

    Last Modified: 11 Jun 2025

    The Seed Social WordPress plugin before 2.0.4 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

    Published: 16 Jan 2024
    7.2
    High

    CVE-2022-1538

    Last Modified: 20 Jun 2025

    Theme Demo Import WordPress plugin before 1.1.1 does not validate the imported file, allowing high-privilege users such as admin to upload arbitrary files (such as PHP) even when FILE_MODS and FILE_EDIT are disallowed.

    Published: 16 Jan 2024
    5.3
    Medium

    CVE-2022-1563

    Last Modified: 20 Jun 2025

    The WPGraphQL WooCommerce WordPress plugin before 0.12.4 does not prevent unauthenticated attackers from enumerating a shop's coupon codes and values via GraphQL.

    Published: 16 Jan 2024
    5.4
    Medium

    CVE-2022-2413

    Last Modified: 22 May 2025

    The Slide Anything WordPress plugin before 2.3.47 does not properly sanitize or escape the slide title before outputting it in the admin pages, allowing a logged in user with roles as low as Author to inject a javascript payload into the slide title even when the unfiltered_html capability is disabled.

    Published: 16 Jan 2024
    6.1
    Medium

    CVE-2021-24870

    Last Modified: 9 Jan 2026

    The WP Fastest Cache WordPress plugin before 0.9.5 is lacking a CSRF check in its wpfc_save_cdn_integration AJAX action, and does not sanitise and escape some the options available via the action, which could allow attackers to make logged in high privilege users call it and set a Cross-Site Scripting payload

    Published: 16 Jan 2024
    8.8
    High

    CVE-2021-24869

    Last Modified: 2 Jun 2025

    The WP Fastest Cache WordPress plugin before 0.9.5 does not escape user input in the set_urls_with_terms method before using it in a SQL statement, leading to an SQL injection exploitable by low privilege users such as subscriber

    Published: 16 Jan 2024
    5.4
    Medium

    CVE-2021-24433

    Last Modified: 2 Jun 2025

    The simple sort&search WordPress plugin through 0.0.3 does not make sure that the indexurl parameter of the shortcodes "category_sims", "order_sims", "orderby_sims", "period_sims", and "tag_sims" use allowed URL protocols, which can lead to stored cross-site scripting by users with a role as low as Contributor

    Published: 16 Jan 2024
    6.1
    Medium

    CVE-2021-24432

    Last Modified: 11 Jun 2025

    The Advanced AJAX Product Filters WordPress plugin does not sanitise the 'term_id' POST parameter before outputting it in the page, leading to reflected Cross-Site Scripting issue.

    Published: 16 Jan 2024
    4.8
    Medium

    CVE-2021-25117

    Last Modified: 17 Jun 2025

    The WP-PostRatings WordPress plugin before 1.86.1 does not sanitise the postratings_image parameter from its options page (wp-admin/admin.php?page=wp-postratings/postratings-options.php). Even though the page is only accessible to administrators, and protected against CSRF attacks, the issue is still exploitable when the unfiltered_html capability is disabled.

    Published: 16 Jan 2024
    7.2
    High

    CVE-2021-24151

    Last Modified: 20 Jun 2025

    The WP Editor WordPress plugin before 1.2.7 did not sanitise or validate its setting fields leading to an authenticated (admin+) blind SQL injection issue via an arbitrary parameter when making a request to save the settings.

    Published: 16 Jan 2024
    5.4
    Medium

    CVE-2021-24559

    Last Modified: 20 Jun 2025

    The Qyrr WordPress plugin before 0.7 does not escape the data-uri of the QR Code when outputting it in a src attribute, allowing for Cross-Site Scripting attacks. Furthermore, the data_uri_to_meta AJAX action, available to all authenticated users, only had a CSRF check in place, with the nonce available to users with a role as low as Contributor allowing any user with such role (and above) to set a malicious data-uri in arbitrary QR Code posts, leading to a Stored Cross-Site Scripting issue.

    Published: 16 Jan 2024
    8.8
    High

    CVE-2021-24566

    Last Modified: 11 Jun 2025

    The WooCommerce Currency Switcher FOX WordPress plugin before 1.3.7 was vulnerable to LFI attacks via the "woocs" shortcode.

    Published: 16 Jan 2024
    5.4
    Medium

    CVE-2021-24567

    Last Modified: 21 Nov 2024

    The Simple Post WordPress plugin through 1.1 does not sanitize user input when an authenticated user Text value, then it does not escape these values when outputting to the browser leading to an Authenticated Stored XSS Cross-Site Scripting issue.

    Published: 16 Jan 2024
    6.5
    Medium

    CVE-2024-0507

    Last Modified: 21 Nov 2024

    An attacker with access to a Management Console user account with the editor role could escalate privileges through a command injection vulnerability in the Management Console. This vulnerability affected all versions of GitHub Enterprise Server and was fixed in versions 3.11.3, 3.10.5, 3.9.8, and 3.8.13 This vulnerability was reported via the GitHub Bug Bounty program.

    Published: 16 Jan 2024
    7.2
    High

    CVE-2024-0200

    Last Modified: 21 Nov 2024

    An unsafe reflection vulnerability was identified in GitHub Enterprise Server that could lead to reflection injection. This vulnerability could lead to the execution of user-controlled methods and remote code execution. To exploit this bug, an actor would need to be logged into an account on the GHES instance with the organization owner role. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.12 and was fixed in versions 3.8.13, 3.9.8, 3.10.5, and 3.11.3. This vulnerability was reported via the GitHub Bug Bounty program.

    Published: 16 Jan 2024
    5.3
    Medium

    CVE-2021-4432

    Last Modified: 19 Aug 2026

    A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as problematic. This affects an unknown part of the component USER Command Handler. The manipulation leads to denial of service. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-250719.

    Published: 16 Jan 2024
    6.7
    Medium

    CVE-2023-6395

    Last Modified: 13 Feb 2025

    The Mock software contains a vulnerability wherein an attacker could potentially exploit privilege escalation, enabling the execution of arbitrary code with root user privileges. This weakness stems from the absence of proper sandboxing during the expansion and execution of Jinja2 templates, which may be included in certain configuration parameters. While the Mock documentation advises treating users added to the mock group as privileged, certain build systems invoking mock on behalf of users might inadvertently permit less privileged users to define configuration tags. These tags could then be passed as parameters to mock during execution, potentially leading to the utilization of Jinja2 templates for remote privilege escalation and the execution of arbitrary code as the root user on the build server.

    Published: 16 Jan 2024
    5.3
    Medium

    CVE-2024-0579

    Last Modified: 3 Jun 2025

    A vulnerability classified as critical was found in Totolink X2000R 1.0.0-B20221212.1452. Affected by this vulnerability is the function formMapDelDevice of the file /boafrm/formMapDelDevice. The manipulation of the argument macstr leads to command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 16 Jan 2024
    8.8
    High

    CVE-2024-0578

    Last Modified: 21 Nov 2024

    A vulnerability classified as critical has been found in Totolink LR1200GB 9.1.0u.6619_B20230130. Affected is the function UploadCustomModule of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument File leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-250794 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 16 Jan 2024
    6.1
    Medium

    CVE-2024-0238

    Last Modified: 2 Jun 2025

    The EventON Premium WordPress plugin before 4.5.6, EventON WordPress plugin before 2.2.8 do not have authorisation in an AJAX action, and does not ensure that the post to be updated belong to the plugin, allowing unauthenticated users to update arbitrary post metadata.

    Published: 16 Jan 2024
    5.3
    Medium

    CVE-2024-0235

    Last Modified: 20 Jun 2025

    The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX action, allowing unauthenticated users to retrieve email addresses of any users on the blog

    Published: 16 Jan 2024
    6.1
    Medium

    CVE-2024-0233

    Last Modified: 20 Jun 2025

    The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not properly sanitise and escape a parameter before outputting it back in pages, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 16 Jan 2024
    6.1
    Medium

    CVE-2024-0187

    Last Modified: 22 May 2025

    The Community by PeepSo WordPress plugin before 6.3.1.2 does not sanitise and escape various parameters and generated URLs before outputting them back attributes, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

    Published: 16 Jan 2024
    5.3
    Medium

    CVE-2024-0236

    Last Modified: 20 Jun 2025

    The EventON WordPress plugin before 4.5.5, EventON WordPress plugin before 2.2.7 do not have authorisation in an AJAX action, allowing unauthenticated users to retrieve the settings of arbitrary virtual events, including any meeting password set (for example for Zoom)

    Published: 16 Jan 2024
    5.3
    Medium

    CVE-2024-0237

    Last Modified: 2 Jun 2025

    The EventON WordPress plugin through 4.5.8, EventON WordPress plugin before 2.2.7 do not have authorisation in some AJAX actions, allowing unauthenticated users to update virtual events settings, such as meeting URL, moderator, access details etc

    Published: 16 Jan 2024
    8.8
    High

    CVE-2024-0577

    Last Modified: 2 Jun 2025

    A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130. It has been rated as critical. This issue affects the function setLanguageCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument lang leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250793 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 16 Jan 2024
    8.8
    High

    CVE-2024-0576

    Last Modified: 6 Jun 2025

    A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130. It has been declared as critical. This vulnerability affects the function setIpPortFilterRules of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument sPort leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-250792. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 16 Jan 2024
    8.8
    High

    CVE-2024-0575

    Last Modified: 21 Nov 2024

    A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130. It has been classified as critical. This affects the function setTracerouteCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument command leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-250791. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 16 Jan 2024
    8.8
    High

    CVE-2024-0574

    Last Modified: 2 Jun 2025

    A vulnerability was found in Totolink LR1200GB 9.1.0u.6619_B20230130 and classified as critical. Affected by this issue is the function setParentalRules of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument sTime leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-250790 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 16 Jan 2024
    8.8
    High

    CVE-2024-0573

    Last Modified: 21 Nov 2024

    A vulnerability has been found in Totolink LR1200GB 9.1.0u.6619_B20230130 and classified as critical. Affected by this vulnerability is the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument ip leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250789 was assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 16 Jan 2024
    8.8
    High

    CVE-2024-0572

    Last Modified: 17 Jun 2025

    A vulnerability, which was classified as critical, was found in Totolink LR1200GB 9.1.0u.6619_B20230130. Affected is the function setOpModeCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument pppoeUser leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-250788. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 16 Jan 2024
    8.8
    High

    CVE-2024-0571

    Last Modified: 17 Jun 2025

    A vulnerability, which was classified as critical, has been found in Totolink LR1200GB 9.1.0u.6619_B20230130. This issue affects the function setSmsCfg of the file /cgi-bin/cstecgi.cgi. The manipulation of the argument text leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-250787. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 16 Jan 2024
    6.9
    Medium

    CVE-2024-0570

    Last Modified: 9 May 2025

    A vulnerability classified as critical was found in Totolink N350RT 9.3.5u.6265. This vulnerability affects unknown code of the file /cgi-bin/cstecgi.cgi of the component Setting Handler. The manipulation leads to improper access controls. The attack can be initiated remotely. It is recommended to upgrade the affected component. VDB-250786 is the identifier assigned to this vulnerability.

    Published: 16 Jan 2024
    4.4
    Medium

    CVE-2023-52106

    Last Modified: 17 Jun 2025

    Vulnerability of permission verification for APIs in the DownloadProviderMain module. Impact: Successful exploitation of this vulnerability will affect integrity and availability.

    Published: 16 Jan 2024