Vulnerabilities protected by our SQL Injection firewall rule

1,602,565
Attacks Blocked in Past 24 Hours

Showing 681-700 of 1,445 Vulnerabilities

Title CVE ID CVSS Vector Date
Accessibility Suite by Online ADA <= 4.12 - Authenticated (Subscriber+) SQL Injection CVE-2022-47420 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H April 19, 2023
Avirato hotels online booking engine <= 5.0.5 - Authenticated (Subscriber+) SQL Injection CVE-2023-0768 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H April 17, 2023
Contact Form to DB by BestWebSoft <= 1.7.0 - Authenticated (Contributor+) SQL Injection via cntctfrmtdb_department CVE-2023-29096 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H April 17, 2023
MapPress Maps for WordPress <= 2.85.4 - Authenticated (Contributor+) SQL Injection via get_maps CVE-2023-26015 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H April 6, 2023
Slimstat Analytics <= 4.9.3.3 - Authenticated (Subscriber+) SQL Injection via Shortcode 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H March 30, 2023
WC Fields Factory <= 4.1.5 - Authenticated(Subscriber+) SQL Injection 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H March 28, 2023
Advanced Page Visit Counter <= 6.4.2 - Authenticated (Contributor+) SQL Injection CVE-2023-28788 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H March 27, 2023
Gallery by BestWebSoft <= 4.6.9 - Authenticated (Author+) SQL Injection CVE-2023-0765 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H March 27, 2023
Waiting: One-click countdowns <= 0.6.2 - Authenticated (Subscriber+) SQL Injection via 'pbc_down[meta][id]' CVE-2023-28659 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H March 22, 2023
WP Popup Banners <= 1.2.5 - Authenticated (Subscriber+) SQL Injection via 'value' CVE-2023-28661 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H March 20, 2023
Events Made Easy <= 2.3.14 - Authenticated (Subscriber+) SQL Injection via 'search_name' CVE-2023-28660 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H March 20, 2023
WP Popup Banners <= 1.2.5 - Authenticated (Subscriber+) SQL Injection CVE-2023-1471 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H March 17, 2023
Slimstat Analytics <= 4.9.3.2 - Authenticated (Subscriber+) SQL Injection via Shortcode CVE-2023-0630 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H February 23, 2023
Paytm Payment Gateway <= 2.7.3 - Authenticated (Editor+) SQL Injection via 'post' CVE-2022-45805 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H February 22, 2023
WP Meta SEO <= 4.5.2 - Authenticated (Subscriber+) SQL Injection CVE-2023-0875 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H February 22, 2023
Plugin for Google Reviews <= 2.2.3 - Authenticated (Subscriber+) SQL Injection CVE-2022-44580 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H February 8, 2023
GigPress <= 2.3.28 - Authenticated (Subscriber+) SQL Injection CVE-2023-0381 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H February 6, 2023
WP Statistics <= 13.2.10 - Authenticated (Subscriber+) SQL Injection CVE-2022-38074 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H January 31, 2023
WP TripAdvisor Review Slider <= 10.7 - Authenticated (Subscriber+) SQL Injection CVE-2023-0261 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H January 23, 2023
WP Google Review Slider <= 11.7 - Authenticated (Subscriber+) SQL Injection CVE-2023-0259 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H January 23, 2023

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation