Nxploited
156 exploits
Active since Nov 2023
Slider Future <= 1.0.5 - Unauthenticated Arbitrary File Upload via slider_future_handle_image_upload
Front End Users <= 3.2.32 - Unauthenticated Arbitrary File Upload via Registration Form
SureTriggers - All-in-One Automation Platform < 1.0.78 - Authentication Bypass
Checkout Mestres do WP for WooCommerce <8.7.5 - Privilege Escalation
HT Contact Form Widget <= 2.2.1 - Unauthenticated Arbitrary File Upload
Cloudflare Image Resizing <1.5.6 - RCE
WordPress TargetSMS <= 1.5 - Unauthenticated Callable Function Execution
Simple User Registration < 6.3 - Unauthenticated Privilege Escalation via User Meta Manipulation
Opal Estate Pro - Property Management and Submission <=1.7.5 - Privilege Escalation
WordPress TNC Toolbox: Web Performance <1.4.2 - Info Disclosure
WordPress AI Engine Plugin MCP Unauthenticated Admin Creation to RCE
Eventin <= 4.0.26 - Privilege Escalation via Incorrect Privilege Assignment
Mojoomla WPAMS <44.0 - Code Injection
Newscrunch <= 1.8.4 - Cross-Site Request Forgery via newscrunch_install_and_activate_plugin()
Flex QR Code Generator <1.2.5 - File Upload
Alone - Charity Multipurpose Non-profit WordPress Theme <7.8.3 - RCE
WP plugin <2.0.3 - Privilege Escalation
NgocCode WP Load Gallery <2.1.6 - RCE
Kubio AI Page Builder <2.5.1 - Local File Inclusion
I Draw <= 1.0 - Arbitrary File Upload
WordPress CSV Mass Importer <1.2 - Privilege Escalation
WordPress File Upload <= 4.24.11 - Unauthenticated Path Traversal via wfu_file_downloader.php
WP Umbrella: Update Backup Restore & Monitoring <= 2.17.0 - Local File Inclusion
Copypress Rest API 1.1-1.2 - Unauthenticated Remote Code Execution via JWT Token Forgery
WordPress Premium Age Verification <3.0.2 - Info Disclosure