WordPress Plugins and Themes with Vulnerabilities

Only last week there were 109 vulnerabilities found in 98 WordPress Plugins and 10 WordPress themes

Type of vulnerability:

Cross-site scripting, SQL Injection, Unauthorized Actions, Cross-site Request Forgery, etc.

Contact Us to find more Be sure to mention the name of the plugin or theme you want to know about.

Vulnerable Plugins

Advanced Database Cleaner
Advanced Page Visit Counter – Most Wanted Analytics Plugin for WordPress
Alma – Pay in installments or later for WooCommerce
Alt Manager
Annual Archive
AppMySite – Create an app with the Best Mobile App Builder
ArtPlacer Widget
Astra Pro Addon
Author Avatars List/Block
Awesome Support – WordPress HelpDesk & Support Plugin
BCorp Shortcodes
Backup Migration
Bacola Core
Biteship: Plugin Ongkos Kirim Kurir Instant
Block for Font Awesome
Bold Page Builder
Bulk Edit Post Titles
Burst Statistics Pro
Burst Statistics – Privacy-Friendly Analytics for WordPress
CSV Importer
CSprite
Caddy – Smart Side Cart for WooCommerce
Calculated Fields Form
Clotya Core
Code Embed
Cookie Bar
Cosmetsy Core
Custom Login
Custom Post Type Page Template
Dashboard Widgets Suite
Digital Publications by Supsystic
Duplicator Pro
Duplicator – WordPress Migration & Backup Plugin
Elementor Timeline Widget
Elementor Website Builder – More than Just a Page Builder
Email Subscription Popup
EmbedPress – Embed PDF
Event Manager
FOX – Currency Switcher Professional for WooCommerce
First Order Discount Woocommerce
Fix My Feed RSS Repair
Flexible Woocommerce Checkout Field Editor
Furnob Core
Genesis Simple Love
Gift Up Gift Cards for WordPress and WooCommerce
Guest Author
Ibtana – WordPress Website Builder
Import and export users and customers
Integrate Google Drive – Browse
LiveChat – WP live chat plugin for WordPress
Login With Ajax
MW WP Form
Manage Notification E-mails
Medibazar Core
Menu Bar Cart Icon For WooCommerce By Binary Carpenter
Multi-Currency For WooCommerce
Optin Forms – Simple List Building Plugin for WordPress
Parto Core
PayTR Taksit Tablosu – WooCommerce
Piotnet Forms
Post Duplicator
Product Catalog Feed by PixelYourSite
Product Enquiry for WooCommerce
Redirects
RegistrationMagic – Custom Registration Forms
Responsive Slick Slider WordPress
Rocket Maintenance Mode & Coming Soon Page
Sayfa Sayac
SharkDropship & Affiliate for AliExpress
Shortcoder — Create Shortcodes for Anything
Shortcodes and extra features for Phlox theme
Smart External Link Click Monitor [Link Log]
Smart Forms – when you need more than just a contact form
Social Media Feather | social media sharing
Spectra – WordPress Gutenberg Blocks
SpeedyCache – Cache
Square Thumbnails
Structured Content (JSON-LD) #wpsc
SureTriggers – Connect All Your Plugins
Symbiostock – Sell Photos Online For Free!
System Dashboard
Translate WordPress – Google Language Translator
Tutor LMS – eLearning and online course solution
Ultimate Addons for Contact Form 7
Ultimate Dashboard – Custom WordPress Dashboard
Video PopUp
WP Booking System – Booking Calendar
WP Photo Album Plus
WP Project Manager – Task
WPBakery Page Builder Addons by Livemesh
WPPerformanceTester
WPsoonOnlinePage
WappPress – Create Mobile App for any WordPress site with our Mobile App Builder in just 1 minute
Webflow Pages
Welcart e-Commerce
WooDiscuz – WooCommerce Comments
WooPayments – Fully Integrated Solution Built and Supported by Woo
WordPress Simple HTML Sitemap

Vulnerable Themes

Bacola – Grocery Store and Food eCommerce Theme
Clotya – Fashion Store eCommerce Theme
Cosmetsy – Beauty Cosmetics Shop Theme
Couponis Demo
Furnob – Furniture Store WooCommerce Theme
Machic – Electronics Store WooCommerce Theme
Medibazar – Medical WooCommerce Theme
Partdo – Auto Parts and Tools Shop WooCommerce Theme
Soledad

Source: https://www.wordfence.com/blog/2023/12/wordfence-intelligence-weekly-wordpress-vulnerability-report-december-4-2023-to-december-10-2023/

Image by pikisuperstar on Freepik