Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 8.8
CVE-2024-0852
The coreActivity: Activity Logging for WordPress plugin before 1.8.1 does not escape some request data when outputting it back in the admin dashboard…
Coreactivity
1.8.1+
MEDIUM 5.3
CVE-2024-0868
The coreActivity: Activity Logging plugin for WordPress plugin before 2.1 retrieved IP addresses of requests via headers such X-FORWARDED to log them…
Coreactivity
2.1+
MEDIUM 6.1
CVE-2024-25093
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Milan Petrovic GD Rating System allows Stored X…
Gd Rating System
3.5.1+
HIGH 7.2
CVE-2023-46821
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Milan Petrovic GD Security Headers allows auth.…
Gd Security Headers
after 1.7
MEDIUM 6.1
CVE-2023-40330
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Milan Petrovic GD Security Headers plugin <= 1.6.1 versions.
Gd Security Headers
after 1.6.1
MEDIUM 6.1
CVE-2023-3122
The GD Mail Queue plugin for WordPress is vulnerable to Stored Cross-Site Scripting via email contents in versions up to, and including, 3.9.3 due to…
Gd Mail Queue
after 3.9.3
MEDIUM 5.4
CVE-2022-45816
Auth. Stored Cross-Site Scripting (XSS) vulnerability in GD bbPress Attachments plugin <= 4.3.1 on WordPress.
Gd Bbpress Attachments
after 4.3.1
MEDIUM 6.1
CVE-2017-18591
The gd-rating-system plugin before 2.1 for WordPress has XSS in log.php.
Gd Rating System
2.1+
HIGH 7.5
CVE-2014-2839
SQL injection vulnerability in the GD Star Rating plugin 19.22 for WordPress allows remote administrators to execute arbitrary SQL commands via the s…
Gd Star Rating
Mitigation only
MEDIUM 6.8
CVE-2014-2838
Multiple cross-site request forgery (CSRF) vulnerabilities in the GD Star Rating plugin 19.22 for WordPress allow remote attackers to hijack the auth…
Gd Star Rating
No fix yet