Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 5.4
CVE-2024-9645
The Post Grid, Posts Slider, Posts Carousel, Post Filter, Post Masonry WordPress plugin before 2.2.93 does not validate and escape some of its block …
Post Grid
2.2.93+
MEDIUM 5.4
CVE-2024-13469
The Pricing Table by PickPlugins plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Button Link in all versions up to, and inc…
Pricing Table
after 1.12.10
HIGH 7.5
CVE-2024-13796
The Post Grid and Gutenberg Blocks – ComboBlocks plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and incl…
Post Grid
2.3.7+
MEDIUM 5.3
CVE-2024-13798
The Post Grid and Gutenberg Blocks – ComboBlocks plugin for WordPress is vulnerable to unauthorized order creation in all versions up to, and includi…
Comboblocks
2.3.6+
HIGH 8.8
CVE-2024-13408
The Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget plugin for WordPress is vulnerable to Local File Inclu…
Post Grid
1.7+
HIGH 8.8
CVE-2021-4450
The Post Grid plugin for WordPress is vulnerable to blind SQL Injection via post metadata in versions up to, and including, 2.1.12 due to insufficien…
Post Grid
after 2.1.12
MEDIUM 6.1
CVE-2024-44002
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PickPlugins Team Showcase team allows Reflected…
Team Showcase
after 1.22.25
MEDIUM 6.1
CVE-2024-45459
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PickPlugins Product Slider for WooCommerce wooc…
Product Slider For Woocommerce
1.13.51+
HIGH 8.8
CVE-2024-8253EPSS 9%
The Post Grid and Gutenberg Blocks plugin for WordPress is vulnerable to privilege escalation in all versions 2.2.87 to 2.2.90. This is due to the pl…
Post Grid
2.2.91+
MEDIUM 5.4
CVE-2024-6346
The Gutenberg Blocks, Page Builder – ComboBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the redirectURL parameter of t…
Comboblocks
2.2.86+
MEDIUM 5.4
CVE-2024-4042
The Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel – Combo Blocks plugin for WordPress is vulnerable to Stored Cr…
Comboblocks
2.2.81+
MEDIUM 5.4
CVE-2024-1988
The Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel – Combo Blocks plugin for WordPress is vulnerable to Stored Cr…
Post Grid
2.2.81+
MEDIUM 5.4
CVE-2024-0881EPSS 17%
The Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel WordPress plugin before 2.2.76 does not have proper authoriza…
Post Grid
2.2.76+
HIGH 7.5
CVE-2023-7072
The Post Grid Combo – 36+ Gutenberg Blocks plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including,…
Post Grid Combo
2.2.69+
MEDIUM 5.4
CVE-2023-51666
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PickPlugins Related Post allows Stored XSS.This…
Related Post
after 2.0.53
MEDIUM 5.4
CVE-2023-6645
The Post Grid Combo – 36+ Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the custom JS parameter in all versi…
Post Grid Combo
after 2.2.64
HIGH 7.5
CVE-2023-40211
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in PickPlugins Post Grid Combo – 36+ Gutenberg Blocks.This issue affects Pos…
Post Grid Combo
2.2.51+
MEDIUM 5.4
CVE-2023-0166
The Product Slider for WooCommerce by PickPlugins WordPress plugin before 1.13.42 does not validate and escape some of its shortcode attributes befor…
Product Slider For Woocommerce
1.13.42+
MEDIUM 5.4
CVE-2022-4836
The Breadcrumb WordPress plugin before 1.5.33 does not validate and escape some of its shortcode attributes before outputting them back in the page, …
Breadcrumb
1.5.33+
CRITICAL 9.8
CVE-2022-4693
The User Verification WordPress plugin before 1.0.94 was affected by an Auth Bypass security vulnerability. To bypass authentication, we only need to…
User Verification
1.0.94+
MEDIUM 6.4
CVE-2022-0447
The Post Grid WordPress plugin before 2.1.16 does not sanitise and escape the post_types parameter before outputting it back in the response of the p…
Post Grid
2.1.16+
MEDIUM 6.1
CVE-2021-24986
The Post Grid WordPress plugin before 2.1.16 does not escape the keyword parameter before outputting it back in an attribute, leading to a Reflected …
Post Grid
2.1.16+
MEDIUM 6.1
CVE-2021-24488EPSS 11%
The slider import search feature and tab parameter of the Post Grid WordPress plugin before 2.1.8 settings are not properly sanitised before being ou…
Post Grid
2.1.8+
MEDIUM 6.1
CVE-2021-24300EPSS 11%
The slider import search feature of the PickPlugins Product Slider for WooCommerce WordPress plugin before 1.13.22 did not properly sanitised the key…
Product Slider For Woocommerce
1.13.22+
MEDIUM 5.4
CVE-2021-24283
The tab GET parameter of the settings page is not sanitised or escaped when being output back in an HTML attribute, leading to a reflected XSS issue.
Accordion
2.2.30+
HIGH 8.8
CVE-2020-35938
PHP Object injection vulnerabilities in the Post Grid plugin before 2.0.73 for WordPress allow remote authenticated attackers to inject arbitrary PHP…
Post Grid
1.22.16 / 2.0.73+
HIGH 8.8
CVE-2020-35939
PHP Object injection vulnerabilities in the Team Showcase plugin before 1.22.16 for WordPress allow remote authenticated attackers to inject arbitrar…
Post Grid
1.22.16 / 2.0.73+
HIGH 8.0
CVE-2020-35936
Stored Cross-Site Scripting (XSS) vulnerabilities in the Post Grid plugin before 2.0.73 for WordPress allow remote authenticated attackers to import …
Post Grid
1.22.16 / 2.0.73+
HIGH 8.0
CVE-2020-35937
Stored Cross-Site Scripting (XSS) vulnerabilities in the Team Showcase plugin before 1.22.16 for WordPress allow remote authenticated attackers to im…
Post Grid
1.22.16 / 2.0.73+
MEDIUM 5.4
CVE-2020-13644
An issue was discovered in the Accordion plugin before 2.2.9 for WordPress. The unprotected AJAX wp_ajax_accordions_ajax_import_json action allowed a…
Accordion
2.2.9+