WordPress <= 6.9.1 - Authenticated (Author+) XML External Entity Injection via getID3 Library Media Upload
WordPress 3.6 Vulnerabilities
WordPress <= 6.9.1 - Authenticated (Author+) XML External Entity Injection via getID3 Library Media Upload
WordPress <= 6.9.1 - Authenticated (Author+) XML External Entity Injection via getID3 Library Media Upload
WordPress <= 6.9.1 - Authenticated (Author+) XML External Entity Injection via getID3 Library Media Upload
WordPress <= 6.9.1 - Authenticated (Author+) XML External Entity Injection via getID3 Library Media Upload
WordPress <= 6.9.1 - Authenticated (Author+) XML External Entity Injection via getID3 Library Media Upload
WordPress <= 6.9.1 - Authenticated (Author+) XML External Entity Injection via getID3 Library Media Upload
WordPress <= 6.9.1 - Authenticated (Author+) XML External Entity Injection via getID3 Library Media Upload
CVE-2022-4973
CVE-2022-4973
CVE-2022-4973
CVE-2022-4973
CVE-2022-4973
CVE-2022-4973
CVE-2022-4973
CVE-2022-4973
CVE-2022-3590
CVE-2022-3590
CVE-2022-3590
CVE-2022-3590
CVE-2022-3590
CVE-2022-3590
CVE-2022-3590
CVE-2022-3590
WordPress <= 6.0.1 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated SQL Injection (SQLi) vulnerability via Link API
WordPress <= 6.0.1 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated SQL Injection (SQLi) vulnerability via Link API
WordPress <= 6.0.1 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated SQL Injection (SQLi) vulnerability via Link API
WordPress <= 6.0.1 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated SQL Injection (SQLi) vulnerability via Link API
WordPress <= 6.0.1 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated SQL Injection (SQLi) vulnerability via Link API
WordPress <= 6.0.1 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated SQL Injection (SQLi) vulnerability via Link API
WordPress <= 6.0.1 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated SQL Injection (SQLi) vulnerability via Link API
WordPress <= 6.0.1 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 6.0.1 - Authenticated SQL Injection (SQLi) vulnerability via Link API
WordPress <= 5.9.1 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.9.1 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.9.1 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.9.1 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.9.1 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.9.1 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.9.1 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.9.1 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress core <= 5.8.1 - Expired DST Root CA X3 Certificate issue
WordPress core <= 5.8.1 - Expired DST Root CA X3 Certificate issue
WordPress core <= 5.8.1 - Expired DST Root CA X3 Certificate issue
WordPress core <= 5.8.1 - Expired DST Root CA X3 Certificate issue
WordPress core <= 5.8.1 - Expired DST Root CA X3 Certificate issue
WordPress core <= 5.8.1 - Expired DST Root CA X3 Certificate issue
WordPress core <= 5.8.1 - Expired DST Root CA X3 Certificate issue
WordPress core <= 5.8.1 - Expired DST Root CA X3 Certificate issue
WordPress core <= 5.8 - Command injection vulnerability in the Lodash library
WordPress core <= 5.8 - Command injection vulnerability in the Lodash library
WordPress core <= 5.8 - Command injection vulnerability in the Lodash library
WordPress core <= 5.8 - Command injection vulnerability in the Lodash library
WordPress core <= 5.8 - Command injection vulnerability in the Lodash library
WordPress core <= 5.8 - Command injection vulnerability in the Lodash library
WordPress core <= 5.8 - Command injection vulnerability in the Lodash library
WordPress core <= 5.8 - Command injection vulnerability in the Lodash library
WordPress <= 5.7.1 - Object injection in PHPMailer vulnerability
WordPress <= 5.7.1 - Object injection in PHPMailer vulnerability
WordPress <= 5.7.1 - Object injection in PHPMailer vulnerability
WordPress <= 5.7.1 - Object injection in PHPMailer vulnerability
WordPress <= 5.7.1 - Object injection in PHPMailer vulnerability
WordPress <= 5.7.1 - Object injection in PHPMailer vulnerability
WordPress <= 5.7.1 - Object injection in PHPMailer vulnerability
WordPress <= 5.7.1 - Object injection in PHPMailer vulnerability
CVE-2020-36326
CVE-2020-36326
CVE-2020-36326
CVE-2020-36326
CVE-2020-36326
CVE-2020-36326
CVE-2020-36326
CVE-2020-36326
WordPress core 4.7-5.7 - Sensitive Data Exposure vulnerability
WordPress core 4.7-5.7 - Sensitive Data Exposure vulnerability
WordPress core 4.7-5.7 - Sensitive Data Exposure vulnerability
WordPress core 4.7-5.7 - Sensitive Data Exposure vulnerability
WordPress core 4.7-5.7 - Sensitive Data Exposure vulnerability
WordPress core 4.7-5.7 - Sensitive Data Exposure vulnerability
WordPress core 4.7-5.7 - Sensitive Data Exposure vulnerability
WordPress core 4.7-5.7 - Sensitive Data Exposure vulnerability
WordPress <= 5.5.1 - XML-RPC Privilege Escalation vulnerability
WordPress <= 5.5.1 - XML-RPC Privilege Escalation vulnerability
WordPress <= 5.5.1 - XML-RPC Privilege Escalation vulnerability
WordPress <= 5.5.1 - XML-RPC Privilege Escalation vulnerability
WordPress <= 5.5.1 - XML-RPC Privilege Escalation vulnerability
WordPress <= 5.5.1 - XML-RPC Privilege Escalation vulnerability
WordPress <= 5.5.1 - XML-RPC Privilege Escalation vulnerability
WordPress <= 5.5.1 - XML-RPC Privilege Escalation vulnerability
WordPress <= 5.3 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.3 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.3 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.3 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.3 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.3 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.3 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.3 - Stored Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.2.3 - Multiple security issues (XSS, SSRF, Cache Poisoning)
WordPress <= 5.2.3 - Multiple security issues (XSS, SSRF, Cache Poisoning)
WordPress <= 5.2.3 - Multiple security issues (XSS, SSRF, Cache Poisoning)
WordPress <= 5.2.3 - Multiple security issues (XSS, SSRF, Cache Poisoning)
WordPress <= 5.2.3 - Multiple security issues (XSS, SSRF, Cache Poisoning)
WordPress <= 5.2.3 - Multiple security issues (XSS, SSRF, Cache Poisoning)
WordPress <= 5.2.3 - Multiple security issues (XSS, SSRF, Cache Poisoning)
WordPress <= 5.2.3 - Multiple security issues (XSS, SSRF, Cache Poisoning)
WordPress core <= 5.2.2 - Cross-Site Scripting (XSS) vulnerability
WordPress core <= 5.2.2 - Cross-Site Scripting (XSS) vulnerability
WordPress core <= 5.2.2 - Cross-Site Scripting (XSS) vulnerability
WordPress core <= 5.2.2 - Cross-Site Scripting (XSS) vulnerability
WordPress core <= 5.2.2 - Cross-Site Scripting (XSS) vulnerability
WordPress core <= 5.2.2 - Cross-Site Scripting (XSS) vulnerability
WordPress core <= 5.2.2 - Cross-Site Scripting (XSS) vulnerability
WordPress core <= 5.2.2 - Cross-Site Scripting (XSS) vulnerability
WordPress 3.9-5.1 - Cross-Site Scripting (XSS) vulnerability
WordPress 3.9-5.1 - Cross-Site Scripting (XSS) vulnerability
WordPress 3.9-5.1 - Cross-Site Scripting (XSS) vulnerability
WordPress 3.9-5.1 - Cross-Site Scripting (XSS) vulnerability
WordPress 3.9-5.1 - Cross-Site Scripting (XSS) vulnerability
WordPress 3.9-5.1 - Cross-Site Scripting (XSS) vulnerability
WordPress 3.9-5.1 - Cross-Site Scripting (XSS) vulnerability
WordPress 3.9-5.1 - Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.0 - Authenticated File Delete vulnerability
WordPress <= 5.0 - Authenticated Post Type Bypass vulnerability
WordPress <= 5.0 - PHP Object Injection via Meta Data vulnerability
WordPress <= 5.0 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.0 - Cross-Site Scripting (XSS) vulnerability that could affect plugins
WordPress <= 5.0 - User Activation Screen Search Engine Indexing
WordPress <= 5.0 - File Upload to XSS on Apache Web Servers vulnerability
WordPress <= 5.0 - Authenticated File Delete vulnerability
WordPress <= 5.0 - Authenticated Post Type Bypass vulnerability
WordPress <= 5.0 - PHP Object Injection via Meta Data vulnerability
WordPress <= 5.0 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.0 - Cross-Site Scripting (XSS) vulnerability that could affect plugins
WordPress <= 5.0 - User Activation Screen Search Engine Indexing
WordPress <= 5.0 - File Upload to XSS on Apache Web Servers vulnerability
WordPress <= 5.0 - Authenticated File Delete vulnerability
WordPress <= 5.0 - Authenticated Post Type Bypass vulnerability
WordPress <= 5.0 - PHP Object Injection via Meta Data vulnerability
WordPress <= 5.0 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.0 - Cross-Site Scripting (XSS) vulnerability that could affect plugins
WordPress <= 5.0 - User Activation Screen Search Engine Indexing
WordPress <= 5.0 - File Upload to XSS on Apache Web Servers vulnerability
WordPress <= 5.0 - Authenticated File Delete vulnerability
WordPress <= 5.0 - Authenticated Post Type Bypass vulnerability
WordPress <= 5.0 - PHP Object Injection via Meta Data vulnerability
WordPress <= 5.0 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.0 - Cross-Site Scripting (XSS) vulnerability that could affect plugins
WordPress <= 5.0 - User Activation Screen Search Engine Indexing
WordPress <= 5.0 - File Upload to XSS on Apache Web Servers vulnerability
WordPress <= 5.0 - Authenticated File Delete vulnerability
WordPress <= 5.0 - Authenticated Post Type Bypass vulnerability
WordPress <= 5.0 - PHP Object Injection via Meta Data vulnerability
WordPress <= 5.0 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.0 - Cross-Site Scripting (XSS) vulnerability that could affect plugins
WordPress <= 5.0 - User Activation Screen Search Engine Indexing
WordPress <= 5.0 - File Upload to XSS on Apache Web Servers vulnerability
WordPress <= 5.0 - Authenticated File Delete vulnerability
WordPress <= 5.0 - Authenticated Post Type Bypass vulnerability
WordPress <= 5.0 - PHP Object Injection via Meta Data vulnerability
WordPress <= 5.0 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.0 - Cross-Site Scripting (XSS) vulnerability that could affect plugins
WordPress <= 5.0 - User Activation Screen Search Engine Indexing
WordPress <= 5.0 - File Upload to XSS on Apache Web Servers vulnerability
WordPress <= 5.0 - Authenticated File Delete vulnerability
WordPress <= 5.0 - Authenticated Post Type Bypass vulnerability
WordPress <= 5.0 - PHP Object Injection via Meta Data vulnerability
WordPress <= 5.0 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.0 - Cross-Site Scripting (XSS) vulnerability that could affect plugins
WordPress <= 5.0 - User Activation Screen Search Engine Indexing
WordPress <= 5.0 - File Upload to XSS on Apache Web Servers vulnerability
WordPress <= 5.0 - Authenticated File Delete vulnerability
WordPress <= 5.0 - Authenticated Post Type Bypass vulnerability
WordPress <= 5.0 - PHP Object Injection via Meta Data vulnerability
WordPress <= 5.0 - Authenticated Cross-Site Scripting (XSS) vulnerability
WordPress <= 5.0 - Cross-Site Scripting (XSS) vulnerability that could affect plugins
WordPress <= 5.0 - User Activation Screen Search Engine Indexing
WordPress <= 5.0 - File Upload to XSS on Apache Web Servers vulnerability
CVE-2018-14028
CVE-2018-14028
CVE-2018-14028
CVE-2018-14028
CVE-2018-14028
CVE-2018-14028
CVE-2018-14028
CVE-2018-14028
WordPress <=4.9.4 - Vulnerable due to "localhost" default parameter
WordPress <=4.9.4 - Use Safe Redirect for Login
WordPress <=4.9.4 - Escape Version in Generator Tag
WordPress <=4.9.4 - Vulnerable due to "localhost" default parameter
WordPress <=4.9.4 - Use Safe Redirect for Login
WordPress <=4.9.4 - Escape Version in Generator Tag
WordPress <=4.9.4 - Vulnerable due to "localhost" default parameter
WordPress <=4.9.4 - Use Safe Redirect for Login
WordPress <=4.9.4 - Escape Version in Generator Tag
WordPress <=4.9.4 - Vulnerable due to "localhost" default parameter
WordPress <=4.9.4 - Use Safe Redirect for Login
WordPress <=4.9.4 - Escape Version in Generator Tag
WordPress <=4.9.4 - Vulnerable due to "localhost" default parameter
WordPress <=4.9.4 - Use Safe Redirect for Login
WordPress <=4.9.4 - Escape Version in Generator Tag
WordPress <=4.9.4 - Vulnerable due to "localhost" default parameter
WordPress <=4.9.4 - Use Safe Redirect for Login
WordPress <=4.9.4 - Escape Version in Generator Tag
WordPress <=4.9.4 - Vulnerable due to "localhost" default parameter
WordPress <=4.9.4 - Use Safe Redirect for Login
WordPress <=4.9.4 - Escape Version in Generator Tag
WordPress <=4.9.4 - Vulnerable due to "localhost" default parameter
WordPress <=4.9.4 - Use Safe Redirect for Login
WordPress <=4.9.4 - Escape Version in Generator Tag
WordPress 3.7-4.9.1 - Cross-Site Scripting vulnerability
WordPress 3.7-4.9.1 - Cross-Site Scripting vulnerability
WordPress 3.7-4.9.1 - Cross-Site Scripting vulnerability
WordPress 3.7-4.9.1 - Cross-Site Scripting vulnerability
WordPress 3.7-4.9.1 - Cross-Site Scripting vulnerability
WordPress 3.7-4.9.1 - Cross-Site Scripting vulnerability
WordPress 3.7-4.9.1 - Cross-Site Scripting vulnerability
WordPress 3.7-4.9.1 - Cross-Site Scripting vulnerability
WordPress <=4.9 - Authenticated JavaScript File Upload vulnerability
WordPress <=4.9 - Authenticated JavaScript File Upload vulnerability
WordPress <=4.9 - Authenticated JavaScript File Upload vulnerability
WordPress <=4.9 - Authenticated JavaScript File Upload vulnerability
WordPress <=4.9 - Authenticated JavaScript File Upload vulnerability
WordPress <=4.9 - Authenticated JavaScript File Upload vulnerability
WordPress <=4.9 - Authenticated JavaScript File Upload vulnerability
WordPress <=4.9 - Authenticated JavaScript File Upload vulnerability
WordPress <=4.8.2 - potential SQL injection (SQLi), $wpdb->prepare() issue, possible unsafe queries
WordPress <=4.8.2 - potential SQL injection (SQLi), $wpdb->prepare() issue, possible unsafe queries
WordPress <=4.8.2 - potential SQL injection (SQLi), $wpdb->prepare() issue, possible unsafe queries
WordPress <=4.8.2 - potential SQL injection (SQLi), $wpdb->prepare() issue, possible unsafe queries
WordPress <=4.8.2 - potential SQL injection (SQLi), $wpdb->prepare() issue, possible unsafe queries
WordPress <=4.8.2 - potential SQL injection (SQLi), $wpdb->prepare() issue, possible unsafe queries
WordPress <=4.8.2 - potential SQL injection (SQLi), $wpdb->prepare() issue, possible unsafe queries
WordPress <=4.8.2 - potential SQL injection (SQLi), $wpdb->prepare() issue, possible unsafe queries
WordPress <=4.8.1 - SQL injection (SQLi) vulnerability
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (oEmbed)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (visual editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (plugin editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (template names)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (link modal)
WordPress <=4.8.1 - Path traversal vulnerability (file unzipping code)
WordPress <=4.8.1 - Path traversal vulnerability (customizer)
WordPress <=4.8.1 - Open redirect vulnerability (user and term edit screens)
WordPress <=4.8.1 - SQL injection (SQLi) vulnerability
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (oEmbed)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (visual editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (plugin editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (template names)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (link modal)
WordPress <=4.8.1 - Path traversal vulnerability (file unzipping code)
WordPress <=4.8.1 - Path traversal vulnerability (customizer)
WordPress <=4.8.1 - Open redirect vulnerability (user and term edit screens)
WordPress <=4.8.1 - SQL injection (SQLi) vulnerability
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (oEmbed)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (visual editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (plugin editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (template names)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (link modal)
WordPress <=4.8.1 - Path traversal vulnerability (file unzipping code)
WordPress <=4.8.1 - Path traversal vulnerability (customizer)
WordPress <=4.8.1 - Open redirect vulnerability (user and term edit screens)
WordPress <=4.8.1 - SQL injection (SQLi) vulnerability
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (oEmbed)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (visual editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (plugin editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (template names)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (link modal)
WordPress <=4.8.1 - Path traversal vulnerability (file unzipping code)
WordPress <=4.8.1 - Path traversal vulnerability (customizer)
WordPress <=4.8.1 - Open redirect vulnerability (user and term edit screens)
WordPress <=4.8.1 - SQL injection (SQLi) vulnerability
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (oEmbed)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (visual editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (plugin editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (template names)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (link modal)
WordPress <=4.8.1 - Path traversal vulnerability (file unzipping code)
WordPress <=4.8.1 - Path traversal vulnerability (customizer)
WordPress <=4.8.1 - Open redirect vulnerability (user and term edit screens)
WordPress <=4.8.1 - SQL injection (SQLi) vulnerability
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (oEmbed)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (visual editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (plugin editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (template names)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (link modal)
WordPress <=4.8.1 - Path traversal vulnerability (file unzipping code)
WordPress <=4.8.1 - Path traversal vulnerability (customizer)
WordPress <=4.8.1 - Open redirect vulnerability (user and term edit screens)
WordPress <=4.8.1 - SQL injection (SQLi) vulnerability
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (oEmbed)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (visual editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (plugin editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (template names)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (link modal)
WordPress <=4.8.1 - Path traversal vulnerability (file unzipping code)
WordPress <=4.8.1 - Path traversal vulnerability (customizer)
WordPress <=4.8.1 - Open redirect vulnerability (user and term edit screens)
WordPress <=4.8.1 - SQL injection (SQLi) vulnerability
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (oEmbed)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (visual editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (plugin editor)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (template names)
WordPress <=4.8.1 - Cross-Site Scripting (XSS) vulnerability (link modal)
WordPress <=4.8.1 - Path traversal vulnerability (file unzipping code)
WordPress <=4.8.1 - Path traversal vulnerability (customizer)
WordPress <=4.8.1 - Open redirect vulnerability (user and term edit screens)
CVE-2017-8295
CVE-2017-8295
CVE-2017-8295
CVE-2017-8295
CVE-2017-8295
CVE-2017-8295
CVE-2017-8295
CVE-2017-8295
CVE-2017-6815
CVE-2017-6817
CVE-2017-6815
CVE-2017-6817
CVE-2017-6815
CVE-2017-6817
CVE-2017-6815
CVE-2017-6817
CVE-2017-6815
CVE-2017-6817
CVE-2017-6815
CVE-2017-6817
CVE-2017-6815
CVE-2017-6817
CVE-2017-6815
CVE-2017-6817
CVE-2017-5611
CVE-2017-5611
CVE-2017-5611
CVE-2017-5611
CVE-2017-5611
CVE-2017-5611
CVE-2017-5611
CVE-2017-5611
CVE-2017-5488
CVE-2017-5490
CVE-2017-5492
CVE-2017-5491
CVE-2017-5493
CVE-2017-5488
CVE-2017-5490
CVE-2017-5492
CVE-2017-5491
CVE-2017-5493
CVE-2017-5488
CVE-2017-5490
CVE-2017-5492
CVE-2017-5491
CVE-2017-5493
CVE-2017-5488
CVE-2017-5490
CVE-2017-5492
CVE-2017-5491
CVE-2017-5493
CVE-2017-5488
CVE-2017-5490
CVE-2017-5492
CVE-2017-5491
CVE-2017-5493
CVE-2017-5488
CVE-2017-5490
CVE-2017-5492
CVE-2017-5491
CVE-2017-5493
CVE-2017-5488
CVE-2017-5490
CVE-2017-5492
CVE-2017-5491
CVE-2017-5493
CVE-2017-5488
CVE-2017-5490
CVE-2017-5492
CVE-2017-5491
CVE-2017-5493
CVE-2016-7168
CVE-2016-7169
CVE-2016-7168
CVE-2016-7169
CVE-2016-7168
CVE-2016-7169
CVE-2016-7168
CVE-2016-7169
CVE-2016-7168
CVE-2016-7169
CVE-2016-7168
CVE-2016-7169
CVE-2016-7168
CVE-2016-7169
CVE-2016-7168
CVE-2016-7169
WordPress Core < 4.5 - Server-Side Request Forgery
WordPress Core < 4.5 - Server-Side Request Forgery
WordPress Core < 4.5 - Server-Side Request Forgery
WordPress Core < 4.5 - Server-Side Request Forgery
WordPress Core < 4.5 - Server-Side Request Forgery
WordPress Core < 4.5 - Server-Side Request Forgery
WordPress Core < 4.5 - Server-Side Request Forgery
WordPress Core < 4.5 - Server-Side Request Forgery
CVE-2016-6634
CVE-2016-6635
CVE-2016-6634
CVE-2016-6635
CVE-2016-6634
CVE-2016-6635
CVE-2016-6634
CVE-2016-6635
CVE-2016-6634
CVE-2016-6635
CVE-2016-6634
CVE-2016-6635
CVE-2016-6634
CVE-2016-6635
CVE-2016-6634
CVE-2016-6635
WordPress <= 4.5.3 - Path traversal
WordPress <= 4.5.3 - Path traversal
WordPress <= 4.5.3 - Path traversal
WordPress <= 4.5.3 - Path traversal
WordPress <= 4.5.3 - Path traversal
WordPress <= 4.5.3 - Path traversal
WordPress <= 4.5.3 - Path traversal
WordPress <= 4.5.3 - Path traversal
CVE-2016-5835
CVE-2016-5837
CVE-2016-5835
CVE-2016-5837
CVE-2016-5835
CVE-2016-5837
CVE-2016-5835
CVE-2016-5837
CVE-2016-5835
CVE-2016-5837
CVE-2016-5835
CVE-2016-5837
CVE-2016-5835
CVE-2016-5837
CVE-2016-5835
CVE-2016-5837
WordPress <= 4.2 - Stored XSS
WordPress <= 4.2 - Stored XSS
WordPress <= 4.2 - Stored XSS
WordPress <= 4.2 - Stored XSS
WordPress <= 4.2 - Stored XSS
WordPress <= 4.2 - Stored XSS
WordPress <= 4.2 - Stored XSS
WordPress <= 4.2 - Stored XSS
WordPress Core < 3.8.2 - SQL Injection
WordPress Core < 3.8.2 - SQL Injection
WordPress Core < 3.8.2 - SQL Injection
WordPress Core < 3.8.2 - SQL Injection
WordPress Core < 3.8.2 - SQL Injection
WordPress Core < 3.8.2 - SQL Injection
WordPress Core < 3.8.2 - SQL Injection
WordPress Core < 3.8.2 - SQL Injection
WordPress <=3.6 - URL Redirect Restriction Bypass
WordPress <=3.6 - URL Redirect Restriction Bypass
WordPress <=3.6 - URL Redirect Restriction Bypass
WordPress <=3.6 - URL Redirect Restriction Bypass
WordPress <=3.6 - URL Redirect Restriction Bypass
WordPress <=3.6 - URL Redirect Restriction Bypass
WordPress <=3.6 - URL Redirect Restriction Bypass
CVE-2013-4338
CVE-2013-5738
CVE-2013-5739
CVE-2013-4339
CVE-2013-4340
CVE-2013-4338
CVE-2013-5738
CVE-2013-5739
CVE-2013-4339
CVE-2013-4340
CVE-2013-4338
CVE-2013-5738
CVE-2013-5739
CVE-2013-4339
CVE-2013-4340
CVE-2013-4338
CVE-2013-5738
CVE-2013-5739
CVE-2013-4339
CVE-2013-4340
CVE-2013-4338
CVE-2013-5738
CVE-2013-5739
CVE-2013-4339
CVE-2013-4340
CVE-2013-4338
CVE-2013-5738
CVE-2013-5739
CVE-2013-4339
CVE-2013-4340
CVE-2013-4338
CVE-2013-5738
CVE-2013-5739
CVE-2013-4339
CVE-2013-4340