Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- WordPress <= 5.9.1 - Stored Cross-Site Scripting (XSS) vulnerability
- WordPress <= 5.8.2 - Authenticated Object Injection in Multisites
- WordPress <= 5.8.2 - SQL Injection (SQLi) vulnerability
- WordPress <= 5.8.2 - SQL Injection (SQLi) vulnerability
- WordPress <= 5.8.2 - Stored Cross-Site Scripting (XSS) vulnerability
- WordPress < 5.8 - Plugin Confusion vulnerability
- WordPress core <= 5.8.1 - Expired DST Root CA X3 Certificate issue
- WordPress core <= 5.8 - Command injection vulnerability in the Lodash library
- WordPress core <= 5.8 - Data Exposure via REST API vulnerability
- WordPress core <= 5.8 - Authenticated Cross-Site Scripting (XSS) vulnerability
- WordPress <= 5.7.1 - Object injection in PHPMailer vulnerability
- WordPress core 4.7-5.7 - Sensitive Data Exposure vulnerability
- WordPress core 4.7-5.7 - XML External Entity (XXE) vulnerability
- WordPress <= 5.5.1 - Mishandled deserialization requests vulnerability
- WordPress <= 5.5.1 - Mishandling Embeds From Disabled Sites On a Multisite Network vulnerability
- All in One SEO
- WordPress All in One SEO plugin <= 4.1.5.2 - Authenticated SQL Injection (SQLi) vulnerability
- WordPress All in One SEO plugin <= 4.1.5.2 - Authenticated Privilege Escalation vulnerability
- WordPress All In One SEO Pack plugin <= 4.1.0.1 - Authenticated Remote Code Execution (RCE) vulnerability
- WordPress All in One SEO plugin <= 4.2.3.1 - Multiple Cross-Site Request Forgery (CSRF) vulnerabilities
- Cookie Notice
- WordPress Cookie Notice & Compliance for GDPR / CCPA plugin <= 2.1.3 - Stored Cross-Site Scripting (XSS) vulnerability
- Loco Translate
- WordPress Loco Translate plugin <= 2.6.0 - Authenticated Stored Cross-Site Scripting (XSS) vulnerability
- WordPress Loco Translate plugin <= 2.5.3 - Authenticated PHP Code Injection vulnerability
- Themify Portfolio Post
- WordPress Themify Portfolio Post plugin <= 1.1.6 - Reflected Cross-Site Scripting (XSS) vulnerability
- WP Cerber Security, Anti-spam & Malware Scan
- WordPress WP Cerber Security plugin <= 8.9.5 - Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability
- WordPress WP Cerber Security plugin <= 9.0 - User Enumeration Bypass vulnerability
- Change default database table prefix
- Restrict access to files and directories
- Block access to sensitive files
- Block unauthorized access to wp-config.php
- Disable PHP execution in cache directories
- Block directory browsing
- Disable file editing in WordPress Dashboard
- Turn off pingbacks
- Disable scripts concatenation for WordPress admin panel
- Block author scans
- Block access to .htaccess and .htpasswd
- Block access to potentially sensitive files
- Enable bot protection
- Forbid execution of PHP scripts in the wp-content/uploads directory
- Forbid execution of PHP scripts in the wp-includes directory
- Block unauthorized access to xmlrpc.php
Advertisement
Add Comment
Please, Sign In to add comment