Vulnerabilities protected by our SQL Injection firewall rule

1,758,561
Attacks Blocked in Past 24 Hours

Showing 261-280 of 1,444 Vulnerabilities

Title CVE ID CVSS Vector Date
DiveBook <= 1.1.4 - SQL Injection CVE-2020-14207 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H September 15, 2020
WP Go Maps (formerly WP Google Maps) <= 7.11.17 - SQL Injection CVE-2019-10692 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H September 9, 2020
Payment Form for PayPal Pro < 1.1.65 - SQL Injection CVE-2020-14092 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H July 2, 2020
Nexos - Real Estate WordPress Theme <= 1.7 - SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H June 28, 2020
Travel Booking WordPress Theme < 2.8.4 - SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H June 23, 2020
Comments - wpDiscuz <= 5.3.5 - Blind SQL Injection via order Parameter CVE-2020-13640 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H June 12, 2020
MailerLite Signup Forms < 1.4.4 - Unauthenticated SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H May 22, 2020
Photo Gallery by 10Web <= 1.5.54 - SQL Injection via bwg_search_x Parameter CVE-2021-24139 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H May 15, 2020
Chop Slider 3 <= 3.4 - Unauthenticated SQL Injection CVE-2020-11530 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H May 9, 2020
LearnDash <= 3.1.5 - Unauthenticated SQL Injection CVE-2020-6009 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H April 1, 2020
Custom Searchable Data Entry System <= 1.7.1 - SQL Injection CVE-2020-10817 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H March 27, 2020
Event Espresso Free/Lite <= 3.1.37.12.L - Unauthenticated SQL Injection CVE-2017-14760 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H September 30, 2019
Selio - Real Estate Directory <= 1.1 - SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H September 8, 2019
Photo Gallery by 10Web <= 1.5.34 - SQL Injection CVE-2019-16119 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H September 8, 2019
NextGEN Gallery <= 3.2.10 - SQL Injection CVE-2019-14314 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H August 27, 2019
WP-Polls <= 2.71 - SQL Injection CVE-2015-9352 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H August 26, 2019
All In One WP Security & Firewall <= 4.0.8 - SQL Injection CVE-2016-10887 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H August 14, 2019
GiveWP - Donation Plugin and Fundraising Platform <= 2.5.0 - SQL Injection CVE-2019-13578 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H August 12, 2019
Popup Builder <= 3.44 - SQL Injection CVE-2019-14695 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H August 6, 2019
JoomSport – for Sports: Team & League, Football, Hockey & more < 3.4 - SQL Injection CVE-2019-14348 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H July 29, 2019

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation