Pricing
Solutions
WordPress security
Instantly fix and mitigate vulnerabilities
Plugin auditing
Paid auditing for WordPress vendors
Managed VDP
Start a security program for your plugins
Bug Bounty
Join the community and earn bounties
Enterprise API
At scale monitoring and vPatching for hosts
Vulnerability database
The latest WordPress security intelligence
Login
Start trial
bugb hunter
0
XP
0
Reports
0
Reports, last 90 days
-
17 Nov, 2025
Lvl 0
0
0
0
0
Website
X
GitHub
Sort by
Priority
Severity
Exploited
Search
Affected software | Vulnerability
CVE
AXP
Severity
Reported
Super Testimonial Pro
< 1.0.8
Cross Site Scripting (XSS)
N/A
4.8
No date
Testimonials
<= 2.6
Cross Site Scripting (XSS)
N/A
4.8
No date
WP CSV Exporter
<= 1.3.6
SQL Injection
N/A
6.6
No date
Image Hover Effects Css3
<= 4.5
Cross Site Scripting (XSS)
N/A
5.9
No date
Salat Times
<= 3.2.1
Cross Site Scripting (XSS)
N/A
4.8
No date
WP Contact Slider
<= 2.4.7
Cross Site Scripting (XSS)
N/A
4.8
No date
Social Media Follow Buttons Bar
<= 4.73
Cross Site Scripting (XSS)
N/A
4.8
No date
Comment Guestbook
<= 0.8.0
Cross Site Scripting (XSS)
N/A
4.8
No date
Meks Easy Social Share
<= 1.2.7
Cross Site Scripting (XSS)
N/A
4.8
No date
We’re Open!
<= 1.41
Cross Site Scripting (XSS)
N/A
4.8
No date
Top Bar
<= 3.0.3
Cross Site Scripting (XSS)
N/A
4.8
No date
Social Rocket
<= 1.3.2
Cross Site Scripting (XSS)
N/A
4.8
No date
Advanced Comment Form
<= 1.2.0
Cross Site Scripting (XSS)
N/A
4.8
No date
Donation Thermometer
<= 2.1.2
Cross Site Scripting (XSS)
N/A
4.8
No date
Launcher: Coming Soon & Maintenance Mode
<= 1.0.11
Cross Site Scripting (XSS)
N/A
4.8
No date
Scroll To Top
<= 1.4.0
Cross Site Scripting (XSS)
N/A
4.8
No date
Float to Top Button
<= 2.3.6
Cross Site Scripting (XSS)
N/A
4.8
No date
Social Media Share Buttons | MashShare
<= 3.8.4
Cross Site Scripting (XSS)
N/A
3.4
No date
Ninja Forms
<= 3.6.9
Cross Site Scripting (XSS)
N/A
4.8
No date
Custom Share Buttons with Floating Sidebar
<= 4.1
Cross Site Scripting (XSS)
N/A
3.4
No date
underConstruction
<= 1.20
Cross Site Scripting (XSS)
N/A
4.8
No date
Export any WordPress data to XML/CSV
<= 1.3.4
SQL Injection
N/A
6.6
No date
WP Subscribe
<= 1.2.12
Cross Site Scripting (XSS)
N/A
3.4
No date
Webba Booking
<= 4.2.21
Cross Site Scripting (XSS)
N/A
4.8
No date
WP Maintenance
<= 6.0.7
Cross Site Scripting (XSS)
N/A
4.8
No date
Chaty
<= 2.8.3
Cross Site Scripting (XSS)
N/A
4.8
No date
Ad Injection
<= 1.2.0.19
Cross Site Scripting (XSS)
N/A
7.5
No date
Export All URLs
<= 4.1
Cross Site Scripting (XSS)
N/A
6.1
No date
Export All URLs
<= 4.2
Cross Site Request Forgery (CSRF)
N/A
4.3
No date
MC4WP
<= 4.8.6
Cross Site Scripting (XSS)
N/A
4.8
No date
Social Media Feather
<= 2.0.4
Cross Site Scripting (XSS)
N/A
3.4
No date
Floating Social Media Icon
<= 4.3.5
Cross Site Scripting (XSS)
N/A
4.8
No date
Testimonial
<= 1.5.9
Cross Site Scripting (XSS)
N/A
4.8
No date
Storefront Footer Text
<= 1.0.1
Cross Site Scripting (XSS)
N/A
4.8
No date
Booking.com Banner Creator
<= 1.4.2
Cross Site Scripting (XSS)
N/A
4.8
No date
Booking.com Product Helper
<= 1.0.1
Cross Site Scripting (XSS)
N/A
4.8
No date
Google Language Translator
<= 6.0.11
Cross Site Scripting (XSS)
N/A
4.8
No date
Coming Soon, Under Construction & Maintenance Mode By Dazzler
<= 1.6.3
Cross Site Scripting (XSS)
N/A
4.8
No date
Video Gallery – Vimeo and YouTube Gallery
<= 1.1.4
Cross Site Scripting (XSS)
N/A
4.8
No date
YITH Maintenance Mode
<= 1.3.7
Cross Site Scripting (XSS)
N/A
6.9
No date
Simple Social Media Share Buttons
<= 3.2.3
Cross Site Scripting (XSS)
N/A
6.9
No date
Coming soon and Maintenance mode
<= 3.5.2
Cross Site Scripting (XSS)
N/A
6.9
No date
Easy Accordion
<= 2.0.21
Cross Site Scripting (XSS)
N/A
6.9
No date
Appointment Hour Booking
<= 1.3.15
Cross Site Scripting (XSS)
N/A
6.9
No date
Cookie Notice & Compliance for GDPR / CCPA
<= 2.1.3
Cross Site Scripting (XSS)
N/A
6.9
No date
Icegram
<= 2.0.2
Cross Site Scripting (XSS)
N/A
4.8
No date
Daily Prayer Time
<= 2021.08.07
Cross Site Scripting (XSS)
N/A
4.8
No date
Site Reviews
<= 5.13.0
Cross Site Scripting (XSS)
N/A
4.8
No date
AddToAny Share Buttons
<= 1.7.45
Cross Site Scripting (XSS)
N/A
4.8
No date
Sitewide Notice WP
<= 2.2
Cross Site Scripting (XSS)
N/A
4.8
No date
Business Hours Indicator
<= 2.3.4
Cross Site Scripting (XSS)
N/A
4.8
No date
HD Quiz
<= 1.8.3
Cross Site Scripting (XSS)
N/A
5.4
No date
Simple Banner
<= 2.10.3
Cross Site Scripting (XSS)
N/A
4.8
No date
GiveWP
<= 2.11.3
Cross Site Scripting (XSS)
N/A
4.8
No date
Export Users With Meta
<= 0.6.4
SQL Injection
N/A
5.4
No date
Report vulnerabilities to earn bounties and rewards!
Read more
Include pending
Back to top