Vulnerabilities protected by our SQL Injection firewall rule

1,497,972
Attacks Blocked in Past 24 Hours

Showing 741-760 of 1,444 Vulnerabilities

Title CVE ID CVSS Vector Date
WP Visitor Statistics (Real Time Traffic) <= 4.7 - SQL Injection CVE-2021-24750 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H December 22, 2021
Asgaros Forum <= 1.15.14 - Admin+ SQL Injection via forum_id CVE-2021-25045 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H December 21, 2021
Post Grid <= 2.1.12 - Contributor+ SQL Injection CVE-2021-4450 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H December 15, 2021
All in One SEO 4.1.3.1 - 4.1.5.2 - Authenticated SQL Injection CVE-2021-25037 9.6 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:H/A:H December 14, 2021
The Plus Addons for Elementor - Pro <= 5.0.6 - SQL Injection CVE-2021-24949 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H December 13, 2021
Events Made Easy <= 2.2.35 - Subscriber+ SQL Injection CVE-2021-25030 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H December 6, 2021
WPcalc – Create any online calculators <= 2.1 - SQL Injection CVE-2021-25054 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H December 6, 2021
MOLIE <= 0.5 - SQL Injection CVE-2021-25007 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H November 29, 2021
Rich Reviews by Starfish <= 1.9.5 - SQL Injection CVE-2021-24753 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H November 29, 2021
Hide My WP <= 6.2.3 - SQL Injection CVE-2021-36916 8.6 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L November 24, 2021
WCFM - WooCommerce Multivendor Marketplace <= 3.4.11 - Unauthenticated SQL Injection CVE-2021-24849 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H November 22, 2021
ExportFeed <= 2.0.1.0 - SQL Injection CVE-2021-4208 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H November 22, 2021
Ni WooCommerce Custom Order Status <= 1.9.6 - SQL Injection CVE-2021-24846 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H November 22, 2021
WP User Frontend – Membership, Profile, Registration & Post Submission Plugin for WordPress < 3.5.25 - Authenticated (Admin+) SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H November 18, 2021
Modern Events Calendar Lite <= 6.1.4 - Unauthenticated Blind SQL Injection via time Parameter CVE-2021-24946 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H November 15, 2021
Mediamatic – Media Library Folders <= 2.8.0 - SQL Injection CVE-2021-24848 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H November 15, 2021
SEO Booster <= 3.7 - Admin+ SQL Injection CVE-2021-24747 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H November 15, 2021
Quotes Collection <= 2.5.2 - Authenticated (Admin+) SQL Injection CVE-2021-24861 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H November 15, 2021
WP Block and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection Plugin StopBadBots < 6.67 - Unauthenticated SQL Injection CVE-2021-24863 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H November 15, 2021
LearnPress <= 4.1.3 - Authenticated SQL Injection CVE-2021-24951 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H November 9, 2021

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation