Vulnerabilities in Unknown
5,635 resultsCVE-2025-10636LOWNS Maintenance Mode for WP <= 1.3.1 - Admin+ Stored XSSEPSS 0.2%CVE-2025-14313MEDIUMAdvance WP Query Search Filter <= 1.0.10 - Reflected XSS via taxo_ajaxEPSS 0.2%CVE-2024-5200MEDIUMPostie < 1.9.71 - Admin+ Stored XSSEPSS 0.2%CVE-2026-11361MEDIUMFormidable Forms < 6.32.1 - Unauthenticated Payment Bypass via PayPal APPROVAL_PENDING Subscription StatusEPSS 0.2%CVE-2025-14312MEDIUMAdvance WP Query Search Filter <= 1.0.10 - Reflected XSS via counterEPSS 0.2%CVE-2026-14204MEDIUMGoogle Authenticator < 0.56 - 2FA Secret Overwrite via CSRFEPSS 0.2%CVE-2026-74991MEDIUMWPForms Lite 1.8.8.2 - 2.0.1.1 - Unauthenticated Stripe Refund and Subscription Cancellation via External PaymentIntentEPSS 0.2%CVE-2025-3650LOWjQuery Colorbox <= 4.6.3 - Contributor+ Stored XSSEPSS 0.2%CVE-2026-19723HIGHSocial Media Share Buttons & Social Sharing Icons < 3.0.1 - Reflected XSS via Pin It Share HandlerEPSS 0.2%CVE-2024-13115MEDIUMWP Projects Portfolio with Client Testimonials <= 3.0 - Stored XSS via CSRFEPSS 0.2%CVE-2026-16542MEDIUMImport and export users and customers < 2.4.5 - Admin+ SSRF via bp_avatarEPSS 0.2%CVE-2024-8245MEDIUMGamiPress - Reset User <= 1.0.0 - GamiPress User Data Removal via CSRFEPSS 0.2%CVE-2025-1382MEDIUMContact Us By Lord Linus <= 2.6 - Admin+ Stored XSS via CSRFEPSS 0.2%CVE-2026-97354MEDIUMPowerPress 11.13.12 - 11.17.9 - Contributor+ SSRF via Media URL RedirectsEPSS 0.2%CVE-2024-8082MEDIUMWidgets Reset <= 0.1 - Settings Update via CSRFEPSS 0.2%CVE-2026-89000MEDIUMWPeMatico RSS Feed Fetcher < 2.8.27 - Contributor+ SSRF via Campaign RunEPSS 0.2%CVE-2026-89003MEDIUMWPeMatico RSS Feed Fetcher < 2.8.27 - Contributor+ SSRF via Campaign PreviewEPSS 0.2%CVE-2026-86781MEDIUMSSL Zen < 4.7.40 - Subscriber+ TLS Private Key DisclosureEPSS 0.2%CVE-2024-7984MEDIUMJoy Of Text Lite – SMS messaging for WordPress <= 2.3.1 - Settings Update via CSRFEPSS 0.2%CVE-2026-91077LOWEvent Booking Manager for WooCommerce 5.3.6 - 5.7.2 - Contributor+ Unpublished Event Disclosure via mpwem_load_event_listEPSS 0.2%