WordPress Plugin Vulnerability Report – Table of Contents Plus – Authenticated (Administrator+) Stored Cross-Site Scripting

September 19, 2023
Posted in Security, Vulnerabilities

Plugin Name: Table of Contents Plus Key Information: Software Type: Plugin Software Slug: table-of-contents-plus Software Status: Active Software Author: conjur3r…

Read about this Latest WordPress Vulnerability

WordPress Plugin Vulnerability Report – Comments – wpDiscuz – Unauthenticated SQL Injection

September 18, 2023
Posted in Security, Vulnerabilities

Plugin Name: Comments – wpDiscuz Key Information: Software Type: Plugin Software Slug: wpdiscuz Software Status: Active Software Author: advancedcoding Software…

Read about this Latest WordPress Vulnerability

WordPress Plugin Vulnerability Report – Essential Addons for Elementor – Authenticated (Contributor+) Privilege Escalation

September 14, 2023
Posted in Security, Vulnerabilities

Plugin Name: Essential Addons for Elementor Key Information: Software Type: Plugin Software Slug: essential-addons-for-elementor-lite Software Status: Active Software Author: wpdevteam…

Read about this Latest WordPress Vulnerability

WordPress Plugin Vulnerabilities Report – Booster for WooCommerce – Authenticated Stored Cross-Site Scripting & Information Disclosure – CVE-2023-4945, CVE-2023-4796

September 13, 2023
Posted in Security, Vulnerabilities

Plugin Name: Booster for WooCommerce Key Information: Software Type: Plugin Software Slug: woocommerce-jetpack Software Status: Active Software Author: pluggabl Software…

Read about this Latest WordPress Vulnerability

WordPress Plugin Vulnerability Report – Migration, Backup, Staging – WPvivid – Missing Authorization & Stored Cross-Site Scripting

September 12, 2023
Posted in Security, Vulnerabilities

Plugin Name: Migration, Backup, Staging – WPvivid Key Information: Software Type: Plugin Software Slug: wpvivid-backuprestore Software Status: Active Software Author:…

Read about this Latest WordPress Vulnerability

WordPress Plugin Vulnerability Report: Slimstat Analytics – Authenticated (Contributor+) Blind SQL Injection via Shortcode – CVE-2023-4598

September 11, 2023
Posted in Security, Vulnerabilities

Key Information: Software Type: Plugin Software Slug: wp-slimstat Software Status: Active Software Author: mostafas1990 Software Downloads: 5,922,898 Active Installs: 100,000…

Read about this Latest WordPress Vulnerability

WordPress Plugin Vulnerability Report: EWWW Image Optimizer – Sensitive Information Exposure

September 8, 2023
Posted in Security, Vulnerabilities

Plugin Name: EWWW Image Optimizer Key Information: Software Type: Plugin Software Slug: ewww-image-optimizer Software Status: Active Software Author: nosilver4u Software…

Read about this Latest WordPress Vulnerability

WordPress Plugin Vulnerability Report: EmbedPress – Cross-Site Request Forgery

September 8, 2023
Posted in Security, Vulnerabilities

Plugin Name: EmbedPress Key Information: Software Type: Plugin Software Slug: embedpress Software Status: Active Software Author: wpdevteam Software Downloads: 1,709,151…

Read about this Latest WordPress Vulnerability

WordPress Plugin Vulnerability Report: Duplicate Post Page Menu & Custom Post Type – Missing Authorization to Post Duplication – CVE-2023-4792

September 8, 2023
Posted in Security, Vulnerabilities

Plugin Name: Duplicate Post Page Menu & Custom Post Type Key Information: Software Type: Plugin Software Slug: duplicate-post-page-menu-custom-post-type Software Status:…

Read about this Latest WordPress Vulnerability

WordPress Plugin Vulnerability Report: Starter Templates – Incorrect Authorization – CVE-2023-41805

September 8, 2023
Posted in Security, Vulnerabilities

Plugin Name: Starter Templates Key Information: Software Type: Plugin Software Slug: astra-sites Software Status: Active Software Author: brainstormforce Software Downloads:…

Read about this Latest WordPress Vulnerability

WordPress Plugin Vulnerability Report: User Feedback – Unauthenticated Stored Cross-Site Scripting – CVE-2023-39308

September 8, 2023
Posted in Security, Vulnerabilities

Plugin Name: User Feedback Key Information: Software Type: Plugin Software Slug: userfeedback-lite Software Status: Active Software Author: smub Software Downloads:…

Read about this Latest WordPress Vulnerability