Missing Authorization to Unauthenticated Post Trashing vulnerability
18 March, 2025
Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Deletion vulnerability
17 December, 2024
Authenticated (Admin+) SQL Injection vulnerability
6 September, 2024
Authenticated (Contributor+) SQL Injection via Shortcode vulnerability
5 June, 2024
Cross Site Request Forgery (CSRF) vulnerability
8 April, 2024