ThreatPress

WordPress Vulnerabilities Database

Daily updated database of WordPress plugins, themes and WordPress core vulnerabilities. Our R&D team monitors a large number of sources to add new vulnerabilities to the database on daily basis.

Vulnerabilities

Please use the search to find what you're looking for

Product Title Disclosure Date
Placester WordPress Placester Plugin 0.1 - Cross-Site Scripting 2011-04-03
BackWPup WordPress BackWPup Plugin - Remote and Local Code Execution 2011-03-28
Rating Widget WordPress Rating Widget Plugin 1.3.1 - Multiple Cross-Site Scripting Vulnerabilities 2011-03-17
Sodahead Polls WordPress Sodahead Polls Plugin 2.0.2 - Multiple Cross-Site Scripting Vulnerabilities 2011-03-17
Lazyest Gallery WordPress Lazyest Gallery Plugin 1.0.26 - Cross-Site Scripting 2011-03-10
1 Flash Gallery WordPress 1 Flash Gallery Plugin 0.2.5 - Cross-Site Scripting and SQL Injection 2011-03-08
PhotoSmash Galleries WordPress PhotoSmash Galleries Plugin 1.0.x - Cross-Site Scripting 2011-03-08
Inline Gallery WordPress Inline Gallery Plugin 0.3.9 - Cross-Site Scripting 2011-03-08
GRAND Flash Album Gallery WordPress GRAND Flash Album Gallery Plugin 0.55 - Multiple Vulnerabilities 2011-03-08
PHP Speedy WordPress PHP Speedy Plugin <= 0.5.2 - Remote Code Execution Exploit 2011-03-04
BackWPup WordPress BackWPup Plugin 1.4 - Multiple Information Disclosure Vulnerabilities 2011-02-28
OPS Old Post Spinner WordPress OPS Old Post Spinner Plugin 2.2.1 - Local File Inclusion 2011-02-26
jQuery Mega Menu WordPress jQuery Mega Menu Plugin 1.0 - Local File Inclusion 2011-02-26
IWantOneButton WordPress IWantOneButton Plugin 3.0.1 - Multiple Vulnerabilities 2011-02-24
Forum Server WordPress Forum Server Plugin 1.6.5 - SQL Injection 2011-02-24
Relevanssi WordPress Relevanssi Plugin 2.7.2- Stored XSS 2011-02-24
GigPress WordPress GigPress Plugin 2.1.10 - Stored XSS 2011-02-24
YT-Audio WordPress YT-Audio Plugin 1.7 - Cross-Site Scripting 2011-02-23
ComicPress Manager WordPress ComicPress Manager Plugin 1.4.9 - Cross-Site Scripting 2011-02-23
IGIT Posts Slider Widget WordPress IGIT Posts Slider Widget Plugin 1.0 - Cross-Site Scripting 2011-02-23