CVE-2016-10913
The wp-latest-posts plugin before 3.7.5 for WordPress has XSS.
Source: CVE-2016-10913
CVE-2016-10913
The wp-latest-posts plugin before 3.7.5 for WordPress has XSS.
Source: CVE-2016-10913
CVE-2016-10914
The add-from-server plugin before 3.3.2 for WordPress has CSRF for importing a large file.
Source: CVE-2016-10914
CVE-2015-9318
The awesome-support plugin before 3.1.7 for WordPress has a security issue in which shortcodes are allowed in replies.
Source: CVE-2015-9318
CVE-2015-9317
The awesome-support plugin before 3.1.7 for WordPress has XSS via custom information messages.
Source: CVE-2015-9317
CVE-2015-9330
The wp-all-import plugin before 3.2.5 for WordPress has blind SQL injection.
Source: CVE-2015-9330
CVE-2015-9329
The wp-all-import plugin before 3.2.5 for WordPress has reflected XSS.
Source: CVE-2015-9329
CVE-2017-18520
The democracy-poll plugin before 5.4 for WordPress has XSS via update_l10n in admin/class.DemAdminInit.php.
Source: CVE-2017-18520
CVE-2011-5328
The user-access-manager plugin before 1.2 for WordPress has CSRF.
Source: CVE-2011-5328
CVE-2017-18517
The bws-pinterest plugin before 1.0.5 for WordPress has multiple XSS issues.
Source: CVE-2017-18517