Vulnerabilities protected by our SQL Injection firewall rule

1,974,696
Attacks Blocked in Past 24 Hours

Showing 1221-1240 of 1,444 Vulnerabilities

Title CVE ID CVSS Vector Date
WordPress Landing Pages <= 1.8.4 - Authenticated SQL Injection CVE-2015-4064 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H May 25, 2015
FeedWordPress < 2015.0514 - SQL Injection CVE-2015-4018 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H May 19, 2015
WP Forum <= 2.4 - SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H May 15, 2015
BigContact Contact Page < 1.4.7 - Authenticated SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H May 15, 2015
Visual Form Builder <= 2.8.2 - Authenticated SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H May 15, 2015
Amazon Product in a Post Plugin < 3.5.3 - SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H May 8, 2015
Freshmail <= 1.5.8 - Multiple SQL Injections 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H May 6, 2015
Freshmail for WordPress <= 1.5.8 - SQL Injection CVE-2015-9496 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H May 6, 2015
Pie Register 2.0.14-2.0.15 - SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H May 4, 2015
rtMedia for WordPress, BuddyPress and bbPress < 3.7.40 - SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H April 28, 2015
NEX-Forms – Ultimate Form Builder – Contact forms and much more < 3.4 - SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H April 21, 2015
Community Events < 1.4 - SQL Injection CVE-2015-3313 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H April 20, 2015
Tune Library < 1.5.5 - SQL Injection CVE-2015-3314 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H April 20, 2015
Users Ultra Membership, Users Community and Member Profiles With PayPal Integration Plugin <= 1.4.95 - SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H April 17, 2015
AJAX Store Locator <= 1.2 - SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H April 16, 2015
WP Symposium < 15.4 - SQL Injection CVE-2015-3325 5.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N April 14, 2015
WORDPRESS VIDEO GALLERY <= 2.8 - SQL Injection 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H April 13, 2015
cformsII < 14.6.10 - SQL Injection CVE-2015-9333 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H April 11, 2015
Duplicator <= 0.5.14 - SQL Injection 8.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H April 10, 2015
All In One WP Security & Firewall <= 3.9.0 - SQL Injection CVE-2015-9310 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H April 6, 2015

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation