Vulnerabilities protected by our SQL Injection firewall rule

1,421,202
Attacks Blocked in Past 24 Hours

Showing 821-840 of 1,444 Vulnerabilities

Title CVE ID CVSS Vector Date
LoginPress <= 1.1.15 - Authenticated SQL Injection via Settings Import CVE-2019-15872 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H December 7, 2018
Image Intense <= 3.2.5 - SQL Injection 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H October 11, 2018
Quick Chat <= 4.14 - SQL Injection CVE-2019-1010104 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H June 12, 2018
Dbox 3D Slider Lite <= 1.2.2 - SQL Injection CVE-2018-5374 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H January 11, 2018
Testimonial Slider < 1.2.5 - SQL Injection CVE-2018-5372 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H January 10, 2018
Smooth Slider < 2.8.7 - Authenticated SQL Injection CVE-2018-5373 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H January 10, 2018
RegistrationMagic - Custom Registration Forms <= 3.8.0.4 - SQL Injection 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H December 10, 2017
InLinks <= 1.1 - Authenticated SQL Injection CVE-2017-16955 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H November 22, 2017
JTRT Responsive Tables < 4.1.2 - SQL Injection CVE-2017-18597 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H November 3, 2017
Mojoomla School Management System (Unspecified Version) - Authenticated (Student+) SQL Injection CVE-2017-14843 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H September 26, 2017
Mojoomla Hospital Management System for WordPress Theme < 22-05-2018 - SQL Injection CVE-2017-14846 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H September 26, 2017
WPGYM - Wordpress Gym Management System (Unknown Version) - SQL Injection CVE-2017-14844 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H September 26, 2017
WPAMS - Apartment Management System for wordpress Theme < 17-07-2019 - SQL Injection CVE-2017-14847 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H September 26, 2017
SMSmaster – Multipurpose SMS Gateway for Wordpress (All Versions) - Authenticated SQL Injection CVE-2017-14842 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H September 26, 2017
WPHRM - Human Resource Management System < 1.1 - SQL Injection CVE-2017-14848 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H September 9, 2017
SQL Shortcode <= 1.1 - SQL Execution 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H September 2, 2017
RK Responsive Contact Form <= 1.0.0 - SQL Injection CVE-2017-1002027 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H August 5, 2017
IBPS Online Exam Plugin for WordPress <= 1.0 - SQL Injection CVE-2017-18602 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H July 11, 2017
Task Manager Pro <= 1.3.1 - Blind SQL Injection 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H July 11, 2017
Event Expresso Free <= 3.1.37.11.L - Authenticated SQL Injection CVE-2017-1002026 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H July 4, 2017

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation