20170224 Vulnerable Plugins/Themes Report
 Share
The version of the browser you are using is no longer supported. Please upgrade to a supported browser.Dismiss

 
View only
 
 
ABCDEFGHIJKLMNOPQRSTUVWXYZAAAB
1
NameVersion(s) Affected
Fixed in Version
Plugin DirectoryVulnerabilityLink/Plugin StatusSuggested ActionPlugin/ThemeOther Notes
2
Dance Studio1.0 and earlierunfixeddance-studioArbitrary File Uploadhttp://themes.cmsmasters.net/?theme=dance-studioRemove immediatelyTheme
http://themes.cmsmasters.net/?theme=dance-studio
3
Minimaze ProAll versionsunfixedminamazeArbitrary File Downloadhttp://www.thinkupthemes.com/themes/minamaze/Remove immediatelyTheme
4
Melos ProAll versionsunfixedmelosArbitrary File Downloadhttp://www.thinkupthemes.com/themes/melos/Remove immediatelyTheme
5
InFocusAll versionsunfixedinfocusArbitrary File Downloadhttp://themes.mysitemyway.com/infocus/Remove immediatelyTheme
6
EleganceAll versionsunfixedeleganceArbitrary File Downloadhttp://themes.mysitemyway.com/elegance/Remove immediatelyTheme
7
AwakeAll versionsunfixedawakeArbitrary File Downloadhttp://themes.mysitemyway.com/awake/Remove immediatelyTheme
8
FusionAll versionsunfixedfusionArbitrary File Downloadhttp://themes.mysitemyway.com/fusion/Remove immediatelyTheme
9
ConstructAll versionsunfixedconstructArbitrary File Downloadhttp://themes.mysitemyway.com/construct/Remove immediatelyTheme
10
PersuasionAll versionsunfixedpersuasionArbitrary File Downloadhttp://themes.mysitemyway.com/persuasion/Remove immediatelyTheme
11
DejaVuAll versionsunfixeddejavuArbitrary File Downloadhttp://themes.mysitemyway.com/dejavu/Remove immediatelyTheme
12
MyriadAll versionsunfixedmyriadArbitrary File Downloadhttp://themes.mysitemyway.com/myriad/Remove immediatelyTheme
13
MethodAll versionsunfixedmethodArbitrary File Downloadhttp://themes.mysitemyway.com/method/Remove immediatelyTheme
14
EchelonAll versionsunfixedechelonArbitrary File Downloadhttp://themes.mysitemyway.com/echelon/Remove immediatelyTheme
15
Mail MastaAll versionsunfixedmail-mastaMultiple SQL Injectionsremoved from repositoryRemove immediatelyPlugin
16
ByREV WP-PICShield1.9.7 and earlierunfixedbyrev-wp-picshield-hotlink-defenceCross-Site Request Forgery (CSRF)
https://wordpress.org/plugins/byrev-wp-picshield-hotlink-defence/
RemovePlugin
17
Democracy Poll5.3.6 and earlierunfixeddemocracy-pollCSRF and Cross-SiteScripting (XSS)removed from repositoryRemovePlugin
18
Ultimate Video Gallery1.4 and earlierultimate-galleryReflected XSShttps://wordpress.org/plugins/ultimate-gallery/RemovePlugin
19
Really Simple Gallery1.4 and earlierunfixedreally-simple-galleryReflected XSShttps://wordpress.org/plugins/really-simple-gallery/RemovePlugin
20
Zibra1.7.4 and earlierunfixedzibraReflected XSShttps://wordpress.org/plugins/zibbra/RemovePlugin
21
WP Ad Guru Lite1.6.0 and earlierunfixedwp-ad-guru-liteReflected XSShttps://wordpress.org/plugins/wp-ad-guru-lite/RemovePlugin
22
Simple NewsletterAll versionsunfixedwordpress-newsletterCSRF and XSShttps://wordpress.org/plugins/wordpress-newsletter/RemovePlugin
23
Wordpress.com Custom CSS1.5 and earlierunfixedsafecssCSRF and XSShttps://wordpress.org/plugins/safecss/RemovePlugin
Plugin has been deprecated and will not be updated
24
Easy TableAll versionsunfixedeasy-tableAuthenticated Stored XSSremoved from repositoryRemovePlugin
25
WoWPth2.0 and ealierunfixedwowpthReflected XSShttps://wordpress.org/plugins/wowpth/RemovePlugin
26
Post LogoAll versionsunfixedpost-logoReflected XSShttps://wordpress.org/plugins/post-logo/RemovePlugin
27
Rotating TestimonialAll versionsunfixedrotating-testimonialStored XSShttps://wordpress.org/plugins/rotating-testimonial/RemovePlugin
28
Esponse QR Code Generator1.4 and earlierunfixedesponse-qr-code-generatorStored XSShttps://wordpress.org/plugins/esponce-qr-code-generator/RemovePlugin
29
Time Sheets1.3.11.5.3time-sheetsReflected XSShttps://wordpress.org/plugins/time-sheets/UpdatePlugin
30
Corner Ad1.0.7 1.0.8corner-adAuthenticated XSShttps://wordpress.org/plugins/corner-ad/UpdatePlugin
31
GTranslate2.8.10 and earlier2.8.11gtranslateUnauthenticated Open Redirecthttps://wordpress.org/plugins/gtranslate/UpdatePlugin
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
Loading...
Main menu