Vulnerability index

Browse CVEs

17 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Widget For Google Reviews HIGH 8.8
CVE-2025-7327

The Widget for Google Reviews plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 1.0.15 via the layout p…

Fix: 1.0.16+
Fix from $1,950 2025-07-08
Classified Listing MEDIUM 5.3
CVE-2025-1063

The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versi…

Fix: 4.0.5+
Fix from $1,600 2025-02-25
Shopbuilder HIGH 8.8
CVE-2024-37520

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in RadiusTheme ShopBuilder – El…

Fix: 2.1.13+
Fix from $1,950 2024-07-09
The Post Grid MEDIUM 5.4
CVE-2024-1427

The The Post Grid – Shortcode, Gutenberg Blocks and Elementor Addon for Post Grid plugin for WordPress is vulnerable to Stored Cross-Site Scripting v…

Fix: 7.7.2+
Fix from $1,600 2024-07-02
The Post Grid MEDIUM 5.4
CVE-2024-35739

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RadiusTheme The Post Grid the-post-grid.This is…

Fix: 7.7.2+
Fix from $1,600 2024-06-08
Testimonial Slider And Showcase MEDIUM 5.4
CVE-2024-1746

The Testimonial Slider WordPress plugin before 2.3.8 does not sanitise and escape some of its settings, which could allow high privilege users such a…

Fix: 2.3.8+
Fix from $1,600 2024-04-15
Classified Listing HIGH 8.8
CVE-2024-1315

The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions …

Fix: 3.0.5+
Fix from $1,950 2024-04-09
Classified Listing MEDIUM 5.3
CVE-2024-1352

The Classified Listing – Classified ads & Business Directory Plugin plugin for WordPress is vulnerable to unauthorized access & modification of data …

Fix: 3.0.5+
Fix from $1,600 2024-04-09
The Post Grid HIGH 8.8
CVE-2023-39923

Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme The Post Grid plugin <= 7.2.7 versions.

Fix: after 7.2.7
Fix from $1,950 2023-10-03
Variation Images Gallery For Woocommerce MEDIUM 6.1
CVE-2023-37894

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in RadiusTheme Variation Images Gallery for WooCommerce plugin <= 2.3.3 versions.

Fix: 2.3.4+
Fix from $1,600 2023-07-27
Classified Listing HIGH 8.8
CVE-2023-37387

Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme Classified Listing plugin <= 2.4.5 versions.

Fix: after 2.4.5
Fix from $1,950 2023-07-18
The Post Grid HIGH 8.8
CVE-2022-46853

Cross-Site Request Forgery (CSRF) vulnerability in RadiusTheme The Post Grid plugin <= 5.0.4 versions.

Fix: 5.0.5+
Fix from $1,950 2023-05-23
Portfolio MEDIUM 5.4
CVE-2023-23685

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in RadiusTheme Portfolio – WordPress Portfolio plugin <= 2.8.10 versions.

Fix: 2.8.11+
Fix from $1,600 2023-04-04
Classified Listing MEDIUM 6.1
CVE-2022-2654

The Classima WordPress theme before 2.1.11 and some of its required plugins (Classified Listing before 2.2.14, Classified Listing Pro before 2.0.20, …

Fix: 1.4.20 / 1.10+
Fix from $1,600 2022-09-16
Classified Listing MEDIUM 6.1
CVE-2022-2655

The Classified Listing Pro WordPress plugin before 2.0.20 does not escape a generated URL before outputting it back in an attribute in an admin page,…

Fix: 2.0.20+
Fix from $1,600 2022-09-16
Team Wordpress Team Members Showcase HIGH 8.8
CVE-2022-2557

The Team WordPress plugin before 4.1.2 contains a file which could allow any authenticated users to download arbitrary files from the server via a pa…

Fix: 4.1.2+
Fix from $1,950 2022-08-22
Logo Slider And Showcase MEDIUM 6.5
CVE-2021-24742

The Logo Slider and Showcase WordPress plugin before 1.3.37 allows Editor users to update the plugin's settings via the rtWLSSettings AJAX action bec…

Fix: 1.3.37+
Fix from $1,600 2021-11-01