Skip to content
Features
Pricing
Solutions
Status
API Details
CLI Scanner
Vulnerabilities
Themes
WordPress
Plugins
Stats
Submit Vulnerabilities
Leaderboard
Resources
Blog
Enterprise Features
How to Install WPScan
WPScan Glossary
2024 Website Threat Report
Search
WordPress Theme Vulnerabilities
Show Previous Letters
0-9
a
b
c
d
e
f
g
h
i
j
k
l
m
n
o
p
q
r
s
t
u
v
w
x
y
z
Show Next Letters
Slug
Published
Title
Slug
shopo
Published
2025-08-04
Title
Shopo <= 1.1.4 - Authenticated (Contributor+) Arbitrary File Upload
Slug
shoppette
Published
2015-04-20
Title
Shoppette < 1.0.5 - Unspecified XSS
Slug
short
Published
2022-02-14
Title
Multiple Themes - Reflected Cross-Site Scripting via Customizer Notify
Slug
shotzz
Published
2014-08-01
Title
Shotzz - Full Path Disclosure
Slug
shotzz
Published
2014-08-01
Title
Shotzz - Arbitrary File Upload
Slug
shotzz
Published
2014-08-01
Title
Shotzz - Custom Background Shell Upload
Slug
shoutbox
Published
2014-08-01
Title
Shoutbox - Unspecified XSS
Slug
showbiz
Published
2015-02-11
Title
WordPress Slider Revolution - Local File Disclosure
Slug
showbiz
Published
2014-11-30
Title
WordPress Slider Revolution Shell Upload
Slug
shuban
Published
2022-02-28
Title
Unauthorised AJAX Calls via Freemius
Slug
shuban
Published
2019-02-26
Title
Freemius Library < 2.2.4 - Subscriber+ Arbitrary Option Update
Slug
shuban
Published
2023-07-18
Title
Freemius SDK < 2.5.10 - Reflected Cross-Site Scripting
Slug
shuttle
Published
2025-12-31
Title
Shuttle <= 1.5.0 - Authenticated (Contributor+) Stored Cross-Site Scripting
Slug
sidepane
Published
2025-04-01
Title
Multiple Themify Themes - Reflected Cross-Site Scripting
Slug
sidepane
Published
2025-04-01
Title
Multiple Themify Themes - Contributor+ Arbitrary File Upload
Slug
silesia
Published
2024-06-27
Title
Silesia <= 1.0.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Button Shortcode
Slug
silk-lite
Published
2023-07-18
Title
Freemius SDK < 2.5.10 - Reflected Cross-Site Scripting
Slug
silverorchid
Published
2014-08-01
Title
silverOrchid <= 1.5.0 - XSS
Slug
simplebalance
Published
2014-08-01
Title
Simple Balance <= 2.2.1 - index.php s Parameter XSS
Slug
simplecart
Published
2015-04-02
Title
SimpleCart - File Upload & Execution
Slug
simplecharm
Published
2025-01-03
Title
SimpleCharm < 1.4.4 - Reflected Cross-Site Scripting
Slug
simpledark
Published
2014-08-01
Title
SimpleDark 1.2.10 - 's' Parameter Cross Site Scripting
Slug
simplifii
Published
2023-07-18
Title
Freemius SDK < 2.5.10 - Reflected Cross-Site Scripting
Slug
simplish
Published
2025-04-02
Title
Simplish <= 2.6.4 - Authenticated (Subscriber+) Stored Cross-Site Scripting
Slug
simplo
Published
2014-08-01
Title
Site5 Wordpress Themes Email Spoofing
Previous
1
2
3
4
5
Next
Subscribe
Subscribed
WPScan
Join 30,430 other subscribers
Sign me up
Already have a WordPress.com account?
Log in now.
WPScan
Subscribe
Subscribed
Sign up
Log in
Report this content
View site in Reader
Manage subscriptions
Collapse this bar