Skip to content
Features
Pricing
Solutions
Status
API Details
CLI Scanner
Vulnerabilities
Themes
WordPress
Plugins
Stats
Submit Vulnerabilities
Leaderboard
Resources
Blog
Enterprise Features
How to Install WPScan
WPScan Glossary
2024 Website Threat Report
Search
WordPress Plugin Vulnerabilities
Show Previous Letters
0-9
a
b
c
d
e
f
g
h
i
j
k
l
m
n
o
p
q
r
s
t
u
v
w
x
y
z
Show Next Letters
Slug
Published
Title
Slug
gistpress
Published
2020-01-31
Title
GistPress < 3.0.2 - Authenticated Stored XSS
Slug
git-sync
Published
2024-12-11
Title
GitSync <= 1.1.0 - Cross-Site Request Forgery to Remote Code Execution
Slug
github-gist-shortcode
Published
2025-11-10
Title
GitHub Gist Shortcode Plugin <= 0.2 - Authenticated (Contributor+) Stored Cross-Site Scripting
Slug
give
Published
2015-04-20
Title
Give - Cross-Site Scripting (XSS)
Slug
give
Published
2019-02-05
Title
Give <= 2.3.0 - Cross-Site Scripting (XSS)
Slug
give
Published
2019-08-12
Title
Give <= 2.5.0 - SQL Injection
Slug
give
Published
2019-05-15
Title
Give < 2.4.7 - Stored XSS
Slug
give
Published
2019-09-26
Title
GiveWp < 2.5.5 - Authentication Bypass
Slug
give
Published
2019-10-30
Title
Give WP < 2.5.10 - Multiple Issues
Slug
give
Published
2021-03-23
Title
GiveWP < 2.10.0 - Reflected Cross Site Scripting (XSS)
Slug
give
Published
2021-04-30
Title
Give WP < 2.10.4 - Authenticated Stored Cross-Site Scripting (XSS)
Slug
give
Published
2021-07-26
Title
GiveWP < 2.12.0 - Admin+ Stored XSS
Slug
give
Published
2022-01-18
Title
Give < 2.17.3 - Reflected Cross-Site Scripting via Donation Forms Dashboard
Slug
give
Published
2022-01-18
Title
Give < 2.17.3 - Reflected Cross-Site Scripting via Import Tool
Slug
give
Published
2022-01-18
Title
Give < 2.17.3 - Unauthenticated Reflected Cross-Site Scripting
Slug
give
Published
2022-06-17
Title
GiveWP < 2.21.0 - Donor Information Disclosure
Slug
give
Published
2022-06-20
Title
Give < 2.21.0 - Reflected Cross-Site Scripting
Slug
give
Published
2022-07-11
Title
GiveWP < 2.21.3 - DoS via CSRF
Slug
give
Published
2022-07-11
Title
GiveWP < 2.21.3 - Admin+ Stored Cross-Site Scripting
Slug
give
Published
2022-07-12
Title
GiveWP < 2.21.0 - Manager+ Arbitrary File Creation via Export
Slug
give
Published
2022-07-12
Title
GiveWP < 2.21.0 - Manager+ Arbitrary File Access via Export
Slug
give
Published
2023-01-19
Title
GiveWP < 2.24.0 - Contributor+ Stored XSS
Slug
give
Published
2023-01-19
Title
GiveWP < 2.24.1 - Unauthenticated SQLi
Slug
give
Published
2023-03-10
Title
GiveWP < 2.25.2 - Cross-Site Request Forgery
Slug
give
Published
2023-03-08
Title
GiveWP < 2.25.2 - Admin+ Server-Side Request Forgery
Previous
15
16
17
18
19
Next
Subscribe
Subscribed
WPScan
Join 30,431 other subscribers
Sign me up
Already have a WordPress.com account?
Log in now.
WPScan
Subscribe
Subscribed
Sign up
Log in
Report this content
View site in Reader
Manage subscriptions
Collapse this bar