Pricing
Solutions
WordPress security
Instantly fix and mitigate vulnerabilities
Plugin auditing
Paid auditing for WordPress vendors
Managed VDP
Start a security program for your plugins
Bug Bounty
Join the community and earn bounties
Enterprise API
At scale monitoring and vPatching for hosts
Vulnerability database
The latest WordPress security intelligence
Login
Start trial
Marco Wotschka
0
XP
0
Reports
0
Reports, last 90 days
-
18 Nov, 2025
Lvl 0
0
0
0
0
Website
X
GitHub
Sort by
Priority
Severity
Exploited
Search
Affected software | Vulnerability
CVE
AXP
Severity
Reported
Advanced Local Pickup for WooCommerce
<= 1.5.5
SQL Injection
N/A
7.2
No date
Photo Gallery Slideshow & Masonry Tiled Gallery
<= 1.0.13
Cross Site Scripting (XSS)
N/A
7.1
No date
wordpress vertical image slider plugin
<= 1.2.16
Cross Site Scripting (XSS)
N/A
7.1
No date
YourChannel: Everything you want in a YouTube
<= 1.2.3
Broken Access Control
N/A
6.5
No date
YourChannel: Everything you want in a YouTube
<= 1.2.4
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
YourChannel: Everything you want in a YouTube
<= 1.2.4
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
YourChannel: Everything you want in a YouTube
<= 1.2.3
Broken Access Control
N/A
6.5
No date
YourChannel: Everything you want in a YouTube
<= 1.2.5
Cross Site Scripting (XSS)
N/A
5.5
No date
YourChannel: Everything you want in a YouTube
<= 1.2.4
Cross Site Request Forgery (CSRF)
N/A
4.3
No date
YourChannel: Everything you want in a YouTube
<= 1.2.4
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Sp*tify Play Button for WordPress
<= 2.07
Cross Site Scripting (XSS)
N/A
5.9
No date
Wicked Folders
<= 2.18.16
Broken Access Control
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Broken Access Control
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Broken Access Control
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Broken Access Control
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Broken Access Control
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Broken Access Control
N/A
5.4
No date
Interactive Geo Maps
<= 1.5.9
Cross Site Scripting (XSS)
N/A
5.9
No date
Wicked Folders
<= 2.18.16
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Broken Access Control
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Broken Access Control
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Wicked Folders
<= 2.18.16
Broken Access Control
N/A
5.4
No date
YouTube Channel
< 3.23.0
Cross Site Scripting (XSS)
N/A
5.9
No date
Custom 404 Pro
<= 3.7.1
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Launchpad – Coming Soon & Maintenance Mode Plugin
<= 1.0.13
Cross Site Scripting (XSS)
N/A
5.9
No date
Social Warfare
<= 4.3.1
Cross Site Request Forgery (CSRF)
N/A
4.3
No date
Social Warfare
<= 4.3.0
Broken Access Control
N/A
5.4
No date
ProfilePress
<= 4.5.0
Cross Site Scripting (XSS)
N/A
5.9
No date
Sidebar Widgets by CodeLights
<= 1.4
Cross Site Scripting (XSS)
N/A
5.5
No date
SVG Support
2.5-2.5.1
Cross Site Scripting (XSS)
N/A
6.5
No date
Affiliate Manager
< 6.4.0
Cross Site Scripting (XSS)
N/A
4.8
No date
Affiliate Manager
< 6.4.0
Cross Site Request Forgery (CSRF)
N/A
5.4
No date
Affiliate Manager
< 6.4.0
Cross Site Scripting (XSS)
N/A
6.1
No date
Report vulnerabilities to earn bounties and rewards!
Read more
Include pending
Back to top