Search Results

Updated 8m ago
337,123 CVEs tracked 53,223 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,429 researchers
16,593 results for "wordpress plugin" Clear all
CVE-2023-4600 4.3 MEDIUM EPSS 0.00
AffiliateWP <2.14.0 - Privilege Escalation
The AffiliateWP for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'affwp_activate_addons_page_plugin' function called via an AJAX action in versions up to, and including, 2.14.0. This makes it possible for authenticated attackers, with subscriber-level access and above, to activate arbitrary plugins.
Aug 30, 2023
CVE-2025-9114 9.8 CRITICAL EPSS 0.00
Doccure theme <1.4.8 - Privilege Escalation
The Doccure theme for WordPress is vulnerable to Arbitrary User Password Change in versions up to, and including, 1.4.8. This is due to the plugin providing user-controlled access to objects, letting a user bypass authorization and access system resources. This makes it possible for unauthenticated attackers to change user passwords and potentially take over administrator accounts.
CWE-639 Sep 08, 2025
CVE-2024-5638 6.1 MEDIUM EPSS 0.02
Formula theme <0.5.2 - XSS
The Formula theme for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘id’ parameter in the 'ti_customizer_notify_dismiss_recommended_plugins' AJAX action in all versions up to, and including, 0.5.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that execute if they can successfully trick a user into performing an action such as clicking on a link.
CWE-79 Jun 08, 2024
CVE-2025-1313 8.8 HIGH EPSS 0.00
Nokri - Job Board WordPress Theme <1.6.3 - Privilege Escalation
The Nokri - Job Board WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.6.3. This is due to the plugin not properly validating a user's identity prior to updating their details like email address. This makes it possible for authenticated attackers, with Subscriber-level access and above, to change arbitrary user's email addresses, including administrators, and leverage that to reset the user's password and gain access to their account.
CWE-288 Jul 12, 2025
CVE-2024-12827 9.8 CRITICAL EPSS 0.00
DWT - Directory & Listing WordPress Theme <3.3.6 - Privilege Escala...
The DWT - Directory & Listing WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.3.6. This is due to the plugin not properly checking for an empty token value prior to resetting a user's password through the dwt_listing_reset_password() function. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.
CWE-620 Jun 27, 2025
CVE-2024-12824 9.8 CRITICAL NUCLEI EPSS 0.59
Nokri - Job Board WordPress Theme <1.6.2 - Privilege Escalation
The Nokri – Job Board WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.6.2. This is due to the plugin not properly checking for an empty token value prior updating their details like password. This makes it possible for unauthenticated attackers to change arbitrary user's password, including administrators, and leverage that to gain access to their account.
CWE-620 Mar 01, 2025
CVE-2025-4797 9.8 CRITICAL EPSS 0.00
Golo - City Travel Guide WordPress Theme <1.7.0 - Privilege Escalation
The Golo - City Travel Guide WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.7.0. This is due to the plugin not properly validating a user's identity prior to setting an authorization cookie. This makes it possible for unauthenticated attackers to log in as any user, including administrators, provided they know the user's email address.
CWE-288 Jun 03, 2025
CVE-2024-12876 9.8 CRITICAL EPSS 0.01
Uxper Golo < 1.6.11 - Missing Authorization
The Golo - City Travel Guide WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.6.10. This is due to the plugin not properly validating a user's identity prior to updating their password. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.
CWE-862 Mar 07, 2025
CVE-2024-12860 9.8 CRITICAL EPSS 0.01
Carspot < 2.4.4 - Privilege Escalation
The CarSpot – Dealership Wordpress Classified Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 2.4.3. This is due to the plugin not properly validating a token prior to updating a user's password. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.
CWE-620 Feb 18, 2025
CVE-2025-2526 8.8 HIGH EPSS 0.00
Streamit theme <4.0.2 - Privilege Escalation
The Streamit theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 4.0.2. This is due to the plugin not properly validating a user's identity prior to updating their details like email in the 'st_Authentication_Controller::edit_profile' function. This makes it possible for unauthenticated attackers to change arbitrary user's email addresses, including administrators, and leverage that to reset the user's password and gain access to their account.
CWE-639 Apr 08, 2025
CVE-2024-11350 9.8 CRITICAL EPSS 0.00
AdForest <5.1.6 - Privilege Escalation
The AdForest theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 5.1.6. This is due to the plugin not properly validating a user's identity prior to updating their password through the adforest_reset_password() function. This makes it possible for unauthenticated attackers to change arbitrary user's passwords, including administrators, and leverage that to gain access to their account.
CWE-640 Jan 08, 2025
CVE-2023-38000 6.5 MEDIUM EPSS 0.00
Wordpress < 5.9.7 - XSS
Auth. Stored (contributor+) Cross-Site Scripting (XSS) vulnerability in WordPress core 6.3 through 6.3.1, from 6.2 through 6.2.2, from 6.1 through 6.1.3, from 6.0 through 6.0.5, from 5.9 through 5.9.7 and Gutenberg plugin <= 16.8.0 versions.
CWE-79 Oct 13, 2023
CVE-2017-5488 6.1 MEDIUM 1 Writeup EPSS 0.01
Wordpress < 4.7 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in wp-admin/update-core.php in WordPress before 4.7.1 allow remote attackers to inject arbitrary web script or HTML via the (1) name or (2) version header of a plugin.
CWE-79 Jan 15, 2017
CVE-2017-16510 9.8 CRITICAL 1 Writeup EPSS 0.04
WordPress <4.8.3 - SQL Injection
WordPress before 4.8.3 is affected by an issue where $wpdb->prepare() can create unexpected and unsafe queries leading to potential SQL injection (SQLi) in plugins and themes, as demonstrated by a "double prepare" approach, a different vulnerability than CVE-2017-14723.
CWE-89 Nov 02, 2017
CVE-2012-4422 EPSS 0.00
Wordpress < 3.4.1 - Access Control
wp-admin/plugins.php in WordPress before 3.4.2, when the multisite feature is enabled, does not check for network-administrator privileges before performing a network-wide activation of an installed plugin, which might allow remote authenticated users to make unintended plugin changes by leveraging the Administrator role.
CWE-264 Sep 14, 2012
CVE-2017-1000600 8.8 HIGH EPSS 0.21
WordPress <4.9 - RCE
WordPress version <4.9 contains a CWE-20 Input Validation vulnerability in thumbnail processing that can result in remote code execution. This attack appears to be exploitable via thumbnail upload by an authenticated user and may require additional plugins in order to be exploited however this has not been confirmed at this time. This issue appears to have been partially, but not completely fixed in WordPress 4.9
CWE-20 Sep 06, 2018
CVE-2023-37986 5.9 MEDIUM EPSS 0.00
Minorange Wordpress Yourmembership Single Sign-on < 1.1.3 - XSS
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in miniOrange YourMembership Single Sign On – YM SSO Login plugin <= 1.1.3 versions.
CWE-79 Sep 01, 2023
CVE-2025-12981 9.8 CRITICAL EPSS 0.00
Listee Theme for WordPress <=1.1.6 - Privilege Escalation
The Listee theme for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.1.6. This is due to a broken validation check in the bundled listee-core plugin's user registration function that fails to properly sanitize the user_role parameter. This makes it possible for unauthenticated attackers to register as Administrator by manipulating the user_role parameter during registration.
CWE-269 Feb 27, 2026
CVE-2020-4050 3.5 LOW 1 Writeup EPSS 0.02
WordPress <5.4.2 - Info Disclosure
In affected versions of WordPress, misuse of the `set-screen-option` filter's return value allows arbitrary user meta fields to be saved. It does require an admin to install a plugin that would misuse the filter. Once installed, it can be leveraged by low privileged users. This has been patched in version 5.4.2, along with all the previously affected versions via a minor release (5.3.4, 5.2.7, 5.1.6, 5.0.10, 4.9.15, 4.8.14, 4.7.18, 4.6.19, 4.5.22, 4.4.23, 4.3.24, 4.2.28, 4.1.31, 4.0.31, 3.9.32, 3.8.34, 3.7.34).
CWE-288 Jun 12, 2020
CVE-2013-2201 EPSS 0.01
Wordpress < 3.5.1 - XSS
Multiple cross-site scripting (XSS) vulnerabilities in WordPress before 3.5.2 allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) uploads of media files, (2) editing of media files, (3) installation of plugins, (4) updates to plugins, (5) installation of themes, or (6) updates to themes.
CWE-79 Jul 08, 2013