Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 8.8
CVE-2025-49291
Cross-Site Request Forgery (CSRF) vulnerability in codepeople Calculated Fields Form calculated-fields-form allows Cross Site Request Forgery.This is…
Calculated Fields Form
5.3.59+
MEDIUM 5.4
CVE-2024-8854
The Polls CP WordPress plugin before 1.0.77 does not sanitise and escape some of its poll settings, which could allow high privilege users such as ad…
Polls Cp
1.0.77+
MEDIUM 5.4
CVE-2024-8851
The Polls CP WordPress plugin before 1.0.77 does not sanitise and escape some of its poll settings, which could allow high privilege users such as ad…
Polls Cp
1.0.77+
CRITICAL 9.8
CVE-2025-46247
Missing Authorization vulnerability in codepeople Appointment Booking Calendar appointment-booking-calendar allows Accessing Functionality Not Proper…
Appointment Booking Calendar
1.3.93+
HIGH 8.8
CVE-2025-46241
Cross-Site Request Forgery (CSRF) vulnerability in codepeople Appointment Booking Calendar appointment-booking-calendar allows SQL Injection.This iss…
Appointment Booking Calendar
1.3.93+
MEDIUM 6.5
CVE-2024-13680
The Form Builder CP plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter of the 'CP_EASY_FORM_WILL_APPEAR_HERE' shortcode in al…
Form Builder Cp
1.2.42+
HIGH 7.5
CVE-2024-12274
The Appointment Booking Calendar Plugin and Scheduling Plugin WordPress plugin before 1.1.23 export settings functionality exports data to a public …
Appointment Booking Calendar
1.1.23+
MEDIUM 5.3
CVE-2024-12601
The Calculated Fields Form plugin for WordPress is vulnerable to Denial of Service in all versions up to, and including, 5.2.63. This is due to unlim…
Calculated Fields Form
5.2.64+
HIGH 7.2
CVE-2023-23895
Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form allows Exploiting Incorrectly Configured Access Control Security Levels.…
Wp Time Slots Booking Form
1.1.83+
MEDIUM 6.8
CVE-2024-3632
The Smart Image Gallery WordPress plugin before 1.0.19 does not have CSRF check in place when updating its settings, which could allow attackers to m…
Smart Image Gallery
1.0.19+
CRITICAL 9.8
CVE-2024-35735
Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Form: from n/a through 1.2.11.
Wp Time Slots Booking Form
1.2.12+
HIGH 7.5
CVE-2024-33543
Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Form: from n/a through 1.2.06.
Wp Time Slots Booking Form
1.2.07+
MEDIUM 6.1
CVE-2024-35734
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CodePeople WP Time Slots Booking Form al…
Wp Time Slots Booking Form
1.2.11+
MEDIUM 6.5
CVE-2024-36082
SQL injection vulnerability in Music Store - WordPress eCommerce versions prior to 1.1.14 allows a remote authenticated attacker with an administrati…
Music Store
1.1.14+
MEDIUM 6.5
CVE-2023-48318
Improper Restriction of Excessive Authentication Attempts vulnerability in CodePeople Contact Form Email allows Functionality Bypass.This issue affec…
Contact Form Email
1.3.42+
HIGH 8.8
CVE-2023-27460
Missing Authorization vulnerability in CodePeople, paypaldev CP Contact Form with Paypal allows Functionality Misuse.This issue affects CP Contact Fo…
Cp Contact Form With Paypal
1.3.35+
MEDIUM 5.3
CVE-2024-31302
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in CodePeople Contact Form Email.This issue affects Contact Form Email: from…
Contact Form Email
1.3.44+
MEDIUM 6.1
CVE-2024-29759
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CodePeople Calculated Fields Form allows Reflec…
Calculated Fields Form
1.2.55+
HIGH 8.8
CVE-2023-25039
Missing Authorization vulnerability in CodePeople Google Maps CP.This issue affects Google Maps CP: from n/a through 1.0.43.
Google Maps Cp
after 1.0.43
HIGH 8.8
CVE-2024-0856
The Appointment Booking Calendar WordPress plugin before 1.3.83 does not have CSRF checks in some places, which could allow attackers to make logged …
Appointment Booking Calendar
1.3.83+
MEDIUM 6.1
CVE-2024-2020
The Calculated Fields Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the form page href parameter in all versions up to, …
Calculated Fields Form
5.1.57+
MEDIUM 5.4
CVE-2024-0963
The Calculated Fields Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's CP_CALCULATED_FIELDS shortcode in all v…
Calculated Fields Form
after 1.2.52
HIGH 8.8
CVE-2022-41790
Missing Authorization vulnerability in CodePeople WP Time Slots Booking Form.This issue affects WP Time Slots Booking Form: from n/a through 1.1.76.
Wp Time Slots Booking Form
after 1.1.76
MEDIUM 5.4
CVE-2023-51517
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CodePeople Calculated Fields Form.This issue affects Calculated Fields Form: fro…
Calculated Fields Form
after 1.2.28
MEDIUM 5.4
CVE-2023-2718
The Contact Form Email WordPress plugin before 1.3.38 does not escape submitted values before displaying them in the HTML, leading to a Stored XSS vu…
Contact Form Email
1.3.38+
CRITICAL 9.8
CVE-2015-10099
A vulnerability classified as critical has been found in CP Appointment Calendar Plugin up to 1.1.5 on WordPress. This affects the function dex_proce…
Cp Appointment Calendar
after 1.1.5
CRITICAL 9.8
CVE-2014-125091
A vulnerability has been found in codepeople cp-polls Plugin 1.0.1 on WordPress and classified as critical. This vulnerability affects unknown code o…
Polls Cp
Patch available
HIGH 8.8
CVE-2022-43482
Missing Authorization vulnerability in Appointment Booking Calendar plugin <= 1.3.69 on WordPress.
Appointment Booking Calendar
1.3.70+
HIGH 7.8
CVE-2020-9372EPSS 9%
The Appointment Booking Calendar plugin before 1.3.35 for WordPress allows user input (in fields such as Description or Name) in any booking form to …
Appointment Booking Calendar
1.3.35+
MEDIUM 5.4
CVE-2020-7228
The Calculated Fields Form plugin through 1.0.353 for WordPress suffers from multiple Stored XSS vulnerabilities present in the input forms. These ca…
Calculated Fields Form
after 1.0.353