Vulnerabilities protected by our SQL Injection firewall rule

1,807,813
Attacks Blocked in Past 24 Hours

Showing 1281-1300 of 1,444 Vulnerabilities

Title CVE ID CVSS Vector Date
Mini Cart <= 1.00.1 - Authenticated (Admin+) SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H November 11, 2016
FireStorm Shopping Cart eCommerce Plugin <= 2.07.02 - SQL Injection CVE-2016-10951 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H November 10, 2016
Booking Calendar <= 6.2 - Authenticated (Editor+) SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H August 1, 2016
WP-Stats-Dashboard <= 2.9.4 - Authenticated SQL Injection CVE-2015-9399 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H November 24, 2015
Contact Form Maker <= 1.7.30 - Authenticated (Admin+) SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H November 24, 2015
Watu Quiz <= 2.6.7 - Authenticated (Admin+) SQL Injection CVE-2015-10111 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H November 20, 2015
GigPress <= 2.3.10 - SQL Injection CVE-2015-9353 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H August 24, 2015
WP Symposium < 15.8 - Blind SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:L August 10, 2015
Unite Gallery Lite < 1.5 - Cross-Site Request Forgery and SQL Injection CVE-2015-9447 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 25, 2015
Easy Social Icons <= 1.2.3.1 - SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 22, 2015
Microblog Poster < 1.6.2 - Authenticated Blind SQL Injection CVE-2015-9449 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 22, 2015
CP Contact Form with PayPal < 1.1.6 - SQL Injection CVE-2015-9234 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 9, 2015
Pretty Links – Link Management, Branding, Tracking & Sharing Plugin <= 1.6.7 - SQL Injection CVE-2015-9457 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 8, 2015
SEO SearchTerms Tagging 2 <=1.535 - SQL Injection CVE-2015-9458 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 8, 2015
Awesome Filterable Portfolio < 1.9 - Blind SQL Injection CVE-2015-9461 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 7, 2015
Awesome Filterable Portfolio < 1.9 - Blind SQL Injection CVE-2015-9462 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 7, 2015
WDContactFormBuilder <= 1.0.24 - Authenticated Blind SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H July 7, 2015
Visual Form Builder <= 2.8.2 - Authenticated SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H May 15, 2015
Users Ultra Membership, Users Community and Member Profiles With PayPal Integration Plugin <= 1.4.95 - SQL Injection 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H April 17, 2015
Responsive Slider – Image Slider – Slideshow for WordPress < 2.7.0 - Authenticated (Admin+) SQL Injection CVE-2015-2062 7.2 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H March 12, 2015

Did you know Wordfence Intelligence provides free personal and commercial API access to our comprehensive WordPress vulnerability database, along with a free webhook integration to stay on top of the latest vulnerabilities added and updated in the database? Get started today!

Learn more

Want to get notified of the latest vulnerabilities that may affect your WordPress site?
Install Wordfence on your site today to get notified immediately if your site is affected by a vulnerability that has been added to our database.

Get Wordfence

The Wordfence Intelligence WordPress vulnerability database is completely free to access and query via API. Please review the documentation on how to access and consume the vulnerability data via API.

Documentation