Vulnerability index

Browse CVEs

7 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Pods CRITICAL 9.8
CVE-2025-1446

The Pods WordPress plugin before 3.2.8.2 does not sanitize and escape a parameter before using it in a SQL statement, allowing admins to perform SQL…

Fix: 3.2.8.2+
Fix from $2,300 2025-03-23
Pods MEDIUM 6.1
CVE-2024-11849

The Pods WordPress plugin before 3.2.8.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to …

Fix: 3.2.8.1+
Fix from $1,600 2025-01-06
Pods HIGH 8.8
CVE-2023-6967

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to SQL Injection via shortcode in all versions up to, and including, 3.…

Fix: 2.7.31.2 / 2.8.23.2+
Fix from $1,950 2024-04-09
Pods HIGH 8.8
CVE-2023-6999

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to Remote Code Exxecution via shortcode in all versions up to, and incl…

Fix: 2.7.31.2 / 2.8.23.2+
Fix from $1,950 2024-04-09
Pods HIGH 8.8
CVE-2023-23790

Cross-Site Request Forgery (CSRF) vulnerability in Pods Framework Team Pods – Custom Content Types and Fields plugin <= 2.9.10.2 versions.

Fix: 2.9.11+
Fix from $1,950 2023-05-03
Pods MEDIUM 5.4
CVE-2021-24338

The Pods – Custom Content Types and Fields WordPress plugin before 2.7.27 was vulnerable to an Authenticated Stored Cross-Site Scripting (XSS) securi…

Fix: 2.7.27+
Fix from $1,600 2021-06-21
Pods MEDIUM 5.4
CVE-2021-24339

The Pods – Custom Content Types and Fields WordPress plugin before 2.7.27 was vulnerable to an Authenticated Stored Cross-Site Scripting (XSS) securi…

Fix: 2.7.27+
Fix from $1,600 2021-06-21