diff --git a/internal/data/assets/plugin_616476616e6365642d736f6369616c2d6d656469612d69636f6e73811c9dc5_gen.json b/internal/data/assets/plugin_616476616e6365642d736f6369616c2d6d656469612d69636f6e73811c9dc5_gen.json new file mode 100644 index 00000000..7ae0c688 --- /dev/null +++ b/internal/data/assets/plugin_616476616e6365642d736f6369616c2d6d656469612d69636f6e73811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/999c2207-6d45-4b46-8fe1-03682a949c5c/advanced-social-media-icons","title":"Advanced Social Media Icons <= 1.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'social' Shortcode\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:03:01","sources":[{"name":"Wordfence","remoteId":"999c2207-6d45-4b46-8fe1-03682a949c5c"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/999c2207-6d45-4b46-8fe1-03682a949c5c?source=api-prod","cve":"CVE-2026-7659","affectedVersions":"<=1.2","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_61692d636f70696c6f742d636f6e74656e742d67656e657261746f72811c9dc5_gen.json b/internal/data/assets/plugin_61692d636f70696c6f742d636f6e74656e742d67656e657261746f72811c9dc5_gen.json new file mode 100644 index 00000000..f0b09994 --- /dev/null +++ b/internal/data/assets/plugin_61692d636f70696c6f742d636f6e74656e742d67656e657261746f72811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/74c71541-6706-43d2-af3d-0655e59f997c/ai-copilot-content-generator","title":"AI Chatbot & Workflow Automation by AIWU <= 1.4.17 - Unauthenticated SQL Injection in getListForTbl()\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:07:34","sources":[{"name":"Wordfence","remoteId":"74c71541-6706-43d2-af3d-0655e59f997c"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/74c71541-6706-43d2-af3d-0655e59f997c?source=api-prod","cve":"CVE-2026-2993","affectedVersions":"<=1.4.17","severity":"high"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_617765736f6d652d70726963696e672d7461626c65732d6c6974652d62792d6f7074696d616c706c7567696e73811c9dc5_gen.json b/internal/data/assets/plugin_617765736f6d652d70726963696e672d7461626c65732d6c6974652d62792d6f7074696d616c706c7567696e73811c9dc5_gen.json new file mode 100644 index 00000000..8ef71922 --- /dev/null +++ b/internal/data/assets/plugin_617765736f6d652d70726963696e672d7461626c65732d6c6974652d62792d6f7074696d616c706c7567696e73811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/0ab4cdcd-1ca8-4ee9-87ab-bf4ce33f94d3/awesome-pricing-tables-lite-by-optimalplugins","title":"Pricing Tables for WP <= 1.1.0 - Reflected Cross-Site Scripting via 'page' Parameter\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:05:46","sources":[{"name":"Wordfence","remoteId":"0ab4cdcd-1ca8-4ee9-87ab-bf4ce33f94d3"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/0ab4cdcd-1ca8-4ee9-87ab-bf4ce33f94d3?source=api-prod","cve":"CVE-2026-6808","affectedVersions":"<=1.1.0","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_617a6f6e706f7374811c9dc5_gen.json b/internal/data/assets/plugin_617a6f6e706f7374811c9dc5_gen.json new file mode 100644 index 00000000..cb2f186b --- /dev/null +++ b/internal/data/assets/plugin_617a6f6e706f7374811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/4b32cfa8-6e10-4f09-859e-216c94a6560c/azonpost","title":"AzonPost <= 1.3 - [Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')]\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:06:23","sources":[{"name":"Wordfence","remoteId":"4b32cfa8-6e10-4f09-859e-216c94a6560c"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/4b32cfa8-6e10-4f09-859e-216c94a6560c?source=api-prod","cve":"CVE-2026-7437","affectedVersions":"<=1.3","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_626a2d6c617a792d6c6f6164811c9dc5_gen.json b/internal/data/assets/plugin_626a2d6c617a792d6c6f6164811c9dc5_gen.json index b7df770a..4b6680f3 100644 --- a/internal/data/assets/plugin_626a2d6c617a792d6c6f6164811c9dc5_gen.json +++ b/internal/data/assets/plugin_626a2d6c617a792d6c6f6164811c9dc5_gen.json @@ -1 +1 @@ -[{"advisoryId":"WPSECADV/WF/022f6239-67f2-4680-aeed-34c98c953bea/bj-lazy-load","title":"BJ Lazy Load < 1.0 - Remote File Inclusion via TimThumb\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2015-09-02 00:00:00","sources":[{"name":"Wordfence","remoteId":"022f6239-67f2-4680-aeed-34c98c953bea"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/022f6239-67f2-4680-aeed-34c98c953bea?source=api-prod","cve":"CVE-2015-9415","affectedVersions":"=0.7.5","severity":"critical"}] \ No newline at end of file +[{"advisoryId":"WPSECADV/WF/022f6239-67f2-4680-aeed-34c98c953bea/bj-lazy-load","title":"BJ Lazy Load < 1.0 - Remote File Inclusion via TimThumb\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2015-09-02 00:00:00","sources":[{"name":"Wordfence","remoteId":"022f6239-67f2-4680-aeed-34c98c953bea"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/022f6239-67f2-4680-aeed-34c98c953bea?source=api-prod","cve":"CVE-2015-9415","affectedVersions":"=0.7.5","severity":"critical"},{"advisoryId":"WPSECADV/WF/f443846f-4d70-4ca0-beeb-d2e839b14765/bj-lazy-load","title":"BJ Lazy Load <= 1.0.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom HTML Block\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:10:13","sources":[{"name":"Wordfence","remoteId":"f443846f-4d70-4ca0-beeb-d2e839b14765"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/f443846f-4d70-4ca0-beeb-d2e839b14765?source=api-prod","cve":"CVE-2026-2300","affectedVersions":"<=1.0.9","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_626f6f7473747261702d73686f7274636f6465811c9dc5_gen.json b/internal/data/assets/plugin_626f6f7473747261702d73686f7274636f6465811c9dc5_gen.json new file mode 100644 index 00000000..ba381b49 --- /dev/null +++ b/internal/data/assets/plugin_626f6f7473747261702d73686f7274636f6465811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/2df53b60-c524-4ebd-9a99-ef8e14c140c7/bootstrap-shortcode","title":"Bootstrap Shortcode <= 1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'box' Shortcode\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:03:14","sources":[{"name":"Wordfence","remoteId":"2df53b60-c524-4ebd-9a99-ef8e14c140c7"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/2df53b60-c524-4ebd-9a99-ef8e14c140c7?source=api-prod","cve":"CVE-2026-7661","affectedVersions":"<=1.0","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_636f696e626173652d636f6d6d657263652d666f722d636f6e746163742d666f726d2d37811c9dc5_gen.json b/internal/data/assets/plugin_636f696e626173652d636f6d6d657263652d666f722d636f6e746163742d666f726d2d37811c9dc5_gen.json index efa48536..d3aa21fa 100644 --- a/internal/data/assets/plugin_636f696e626173652d636f6d6d657263652d666f722d636f6e746163742d666f726d2d37811c9dc5_gen.json +++ b/internal/data/assets/plugin_636f696e626173652d636f6d6d657263652d666f722d636f6e746163742d666f726d2d37811c9dc5_gen.json @@ -1 +1 @@ -[{"advisoryId":"WPSECADV/WF/5253fe2b-040b-417c-b257-0cb59ee5aa6e/coinbase-commerce-for-contact-form-7","title":"Freemius SDK <= 2.5.9 - Reflected Cross-Site Scripting via fs_request_get\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2023-07-18 00:00:00","sources":[{"name":"Wordfence","remoteId":"5253fe2b-040b-417c-b257-0cb59ee5aa6e"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/5253fe2b-040b-417c-b257-0cb59ee5aa6e?source=api-prod","cve":"CVE-2023-33999","affectedVersions":"=1.1.1","severity":"medium"}] \ No newline at end of file +[{"advisoryId":"WPSECADV/WF/5253fe2b-040b-417c-b257-0cb59ee5aa6e/coinbase-commerce-for-contact-form-7","title":"Freemius SDK <= 2.5.9 - Reflected Cross-Site Scripting via fs_request_get\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2023-07-18 00:00:00","sources":[{"name":"Wordfence","remoteId":"5253fe2b-040b-417c-b257-0cb59ee5aa6e"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/5253fe2b-040b-417c-b257-0cb59ee5aa6e?source=api-prod","cve":"CVE-2023-33999","affectedVersions":"=1.1.1","severity":"medium"},{"advisoryId":"WPSECADV/WF/9bff2532-802c-4bb1-a0a2-7f5f928deb23/coinbase-commerce-for-contact-form-7","title":"Coinbase Commerce for Contact Form 7 <= 1.1.2 - Missing Authorization to Authenticated (Subscriber+) API Key Modification via 'cccf7_api_key' Parameter\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:04:04","sources":[{"name":"Wordfence","remoteId":"9bff2532-802c-4bb1-a0a2-7f5f928deb23"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/9bff2532-802c-4bb1-a0a2-7f5f928deb23?source=api-prod","cve":"CVE-2026-6709","affectedVersions":"<=1.1.2","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_65696768742d6461792d7765656b2d7072696e742d776f726b666c6f77811c9dc5_gen.json b/internal/data/assets/plugin_65696768742d6461792d7765656b2d7072696e742d776f726b666c6f77811c9dc5_gen.json index ad2121e6..445c42ab 100644 --- a/internal/data/assets/plugin_65696768742d6461792d7765656b2d7072696e742d776f726b666c6f77811c9dc5_gen.json +++ b/internal/data/assets/plugin_65696768742d6461792d7765656b2d7072696e742d776f726b666c6f77811c9dc5_gen.json @@ -1 +1 @@ -[{"advisoryId":"WPSECADV/WF/37c31c26-c4fe-4c98-96de-6f4b0e3a36d4/eight-day-week-print-workflow","title":"Eight Day Week Print Workflow <= 1.2.5 - Authenticated (Custom+) Information Exposure\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2025-12-21 00:00:00","sources":[{"name":"Wordfence","remoteId":"37c31c26-c4fe-4c98-96de-6f4b0e3a36d4"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/37c31c26-c4fe-4c98-96de-6f4b0e3a36d4?source=api-prod","cve":"CVE-2025-67621","affectedVersions":"<=1.2.5","severity":"medium"}] \ No newline at end of file +[{"advisoryId":"WPSECADV/WF/37c31c26-c4fe-4c98-96de-6f4b0e3a36d4/eight-day-week-print-workflow","title":"Eight Day Week Print Workflow <= 1.2.5 - Authenticated (Custom+) Information Exposure\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2025-12-21 00:00:00","sources":[{"name":"Wordfence","remoteId":"37c31c26-c4fe-4c98-96de-6f4b0e3a36d4"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/37c31c26-c4fe-4c98-96de-6f4b0e3a36d4?source=api-prod","cve":"CVE-2025-67621","affectedVersions":"<=1.2.5","severity":"medium"},{"advisoryId":"WPSECADV/WF/c9bb4fae-5a5a-4c1b-a1dd-1aecc0f4b114/eight-day-week-print-workflow","title":"Eight Day Week Print Workflow <= 1.2.6 - Authenticated (Subscriber+) SQL Injection via 'title' Parameter\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:03:26","sources":[{"name":"Wordfence","remoteId":"c9bb4fae-5a5a-4c1b-a1dd-1aecc0f4b114"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/c9bb4fae-5a5a-4c1b-a1dd-1aecc0f4b114?source=api-prod","cve":"CVE-2026-5028","affectedVersions":"<=1.2.6","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_66616e63792d696d6167652d73686f77811c9dc5_gen.json b/internal/data/assets/plugin_66616e63792d696d6167652d73686f77811c9dc5_gen.json new file mode 100644 index 00000000..3289c65c --- /dev/null +++ b/internal/data/assets/plugin_66616e63792d696d6167652d73686f77811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/131d07ad-4e87-4137-a5df-2b74db1e9ae8/fancy-image-show","title":"Fancy Image Show <= 9.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode Attributes\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:03:52","sources":[{"name":"Wordfence","remoteId":"131d07ad-4e87-4137-a5df-2b74db1e9ae8"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/131d07ad-4e87-4137-a5df-2b74db1e9ae8?source=api-prod","cve":"CVE-2026-5340","affectedVersions":"<=9.1","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_666f726d732d7262811c9dc5_gen.json b/internal/data/assets/plugin_666f726d732d7262811c9dc5_gen.json new file mode 100644 index 00000000..219b436f --- /dev/null +++ b/internal/data/assets/plugin_666f726d732d7262811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/80b27cde-68d7-439d-aee6-a390035e2022/forms-rb","title":"Forms Rb <= 1.1.9 - Missing Authorization to Authenticated (Contributor+) Arbitrary Modification via 'form_id' Parameter\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:05:08","sources":[{"name":"Wordfence","remoteId":"80b27cde-68d7-439d-aee6-a390035e2022"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/80b27cde-68d7-439d-aee6-a390035e2022?source=api-prod","cve":"CVE-2026-7050","affectedVersions":"<=1.1.9","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_677261706869632d7765622d64657369676e2d696e63811c9dc5_gen.json b/internal/data/assets/plugin_677261706869632d7765622d64657369676e2d696e63811c9dc5_gen.json new file mode 100644 index 00000000..d80952fe --- /dev/null +++ b/internal/data/assets/plugin_677261706869632d7765622d64657369676e2d696e63811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/4d2d435f-d6ce-41bd-8a45-e252fb4ba419/graphic-web-design-inc","title":"GWD Connect <= 2.9 - Unauthenticated Limited Code Execution via update_agent\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:06:49","sources":[{"name":"Wordfence","remoteId":"4d2d435f-d6ce-41bd-8a45-e252fb4ba419"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/4d2d435f-d6ce-41bd-8a45-e252fb4ba419?source=api-prod","cve":"CVE-2026-6663","affectedVersions":"<=2.9","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_68656c2d6f6e6c696e652d636c617373726f6f6d811c9dc5_gen.json b/internal/data/assets/plugin_68656c2d6f6e6c696e652d636c617373726f6f6d811c9dc5_gen.json new file mode 100644 index 00000000..b0ab18bb --- /dev/null +++ b/internal/data/assets/plugin_68656c2d6f6e6c696e652d636c617373726f6f6d811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/0612c0be-f1c0-4f74-a769-e4616f103ee6/hel-online-classroom","title":"HEL Online Classroom: AI-powered Online Classrooms <= 1.0.3 - Missing Authorization to Unauthenticated Arbitrary Classroom Deletion via 'id' Parameter\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:04:17","sources":[{"name":"Wordfence","remoteId":"0612c0be-f1c0-4f74-a769-e4616f103ee6"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/0612c0be-f1c0-4f74-a769-e4616f103ee6?source=api-prod","cve":"CVE-2026-6708","affectedVersions":"<=1.0.3","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_69706f73706179732d67617465776179732d7763811c9dc5_gen.json b/internal/data/assets/plugin_69706f73706179732d67617465776179732d7763811c9dc5_gen.json index e3fc7b40..4103be5d 100644 --- a/internal/data/assets/plugin_69706f73706179732d67617465776179732d7763811c9dc5_gen.json +++ b/internal/data/assets/plugin_69706f73706179732d67617465776179732d7763811c9dc5_gen.json @@ -1 +1 @@ -[{"advisoryId":"WPSECADV/WF/a7041b6c-b76d-46ee-a2d5-68378ee7f7b6/ipospays-gateways-wc","title":"iPOSpays Gateways WC <= 1.3.7 - Missing Authorization\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-02-07 00:00:00","sources":[{"name":"Wordfence","remoteId":"a7041b6c-b76d-46ee-a2d5-68378ee7f7b6"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/a7041b6c-b76d-46ee-a2d5-68378ee7f7b6?source=api-prod","cve":"CVE-2026-39608","affectedVersions":"<=1.3.7","severity":"medium"}] \ No newline at end of file +[{"advisoryId":"WPSECADV/WF/a1a30930-31c1-4254-867c-073932672a39/ipospays-gateways-wc","title":"iPOSpays Gateways WC <= 1.3.7 - Unauthenticated Missing Authorization to Settings Update via REST API Endpoint\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:07:54","sources":[{"name":"Wordfence","remoteId":"a1a30930-31c1-4254-867c-073932672a39"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/a1a30930-31c1-4254-867c-073932672a39?source=api-prod","cve":"CVE-2026-4663","affectedVersions":"<=1.3.7","severity":"medium"},{"advisoryId":"WPSECADV/WF/a7041b6c-b76d-46ee-a2d5-68378ee7f7b6/ipospays-gateways-wc","title":"iPOSpays Gateways WC <= 1.3.7 - Missing Authorization\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-02-07 00:00:00","sources":[{"name":"Wordfence","remoteId":"a7041b6c-b76d-46ee-a2d5-68378ee7f7b6"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/a7041b6c-b76d-46ee-a2d5-68378ee7f7b6?source=api-prod","cve":"CVE-2026-39608","affectedVersions":"<=1.3.7","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_6c6966657072657373811c9dc5_gen.json b/internal/data/assets/plugin_6c6966657072657373811c9dc5_gen.json index a61abfcc..6cc9f11a 100644 --- a/internal/data/assets/plugin_6c6966657072657373811c9dc5_gen.json +++ b/internal/data/assets/plugin_6c6966657072657373811c9dc5_gen.json @@ -1 +1 @@ -[{"advisoryId":"WPSECADV/WF/28438010-0801-45c6-bf03-86dc93830a12/lifepress","title":"LifePress <= 2.2.1 - Missing Authorization\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-01-22 00:00:00","sources":[{"name":"Wordfence","remoteId":"28438010-0801-45c6-bf03-86dc93830a12"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/28438010-0801-45c6-bf03-86dc93830a12?source=api-prod","cve":"CVE-2026-24563","affectedVersions":"<=2.2.1","severity":"medium"},{"advisoryId":"WPSECADV/WF/f59f2983-722d-4243-9a0c-e0f72c22e4fe/lifepress","title":"LifePress <= 2.1.3 - Missing Authorization\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2025-08-20 00:00:00","sources":[{"name":"Wordfence","remoteId":"f59f2983-722d-4243-9a0c-e0f72c22e4fe"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/f59f2983-722d-4243-9a0c-e0f72c22e4fe?source=api-prod","cve":"CVE-2025-53337","affectedVersions":"<=2.1.3","severity":"medium"}] \ No newline at end of file +[{"advisoryId":"WPSECADV/WF/28438010-0801-45c6-bf03-86dc93830a12/lifepress","title":"LifePress <= 2.2.1 - Missing Authorization\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-01-22 00:00:00","sources":[{"name":"Wordfence","remoteId":"28438010-0801-45c6-bf03-86dc93830a12"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/28438010-0801-45c6-bf03-86dc93830a12?source=api-prod","cve":"CVE-2026-24563","affectedVersions":"<=2.2.1","severity":"medium"},{"advisoryId":"WPSECADV/WF/4fa5b8a9-1683-4806-987d-527834f45d34/lifepress","title":"LifePress <= 2.2.2 - Unauthenticated Stored Cross-Site Scripting via 'n' Parameter via lp_update_mds AJAX Action\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:02:48","sources":[{"name":"Wordfence","remoteId":"4fa5b8a9-1683-4806-987d-527834f45d34"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/4fa5b8a9-1683-4806-987d-527834f45d34?source=api-prod","cve":"CVE-2026-6690","affectedVersions":"<=2.2.2","severity":"high"},{"advisoryId":"WPSECADV/WF/f59f2983-722d-4243-9a0c-e0f72c22e4fe/lifepress","title":"LifePress <= 2.1.3 - Missing Authorization\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2025-08-20 00:00:00","sources":[{"name":"Wordfence","remoteId":"f59f2983-722d-4243-9a0c-e0f72c22e4fe"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/f59f2983-722d-4243-9a0c-e0f72c22e4fe?source=api-prod","cve":"CVE-2025-53337","affectedVersions":"<=2.1.3","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_6e65787464617465811c9dc5_gen.json b/internal/data/assets/plugin_6e65787464617465811c9dc5_gen.json new file mode 100644 index 00000000..39af5bfa --- /dev/null +++ b/internal/data/assets/plugin_6e65787464617465811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/89e053ac-6ef9-4f5a-8aab-bdca40d68ab4/nextdate","title":"Next Date <= 1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'default' Shortcode Attribute\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:07:24","sources":[{"name":"Wordfence","remoteId":"89e053ac-6ef9-4f5a-8aab-bdca40d68ab4"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/89e053ac-6ef9-4f5a-8aab-bdca40d68ab4?source=api-prod","cve":"CVE-2026-4920","affectedVersions":"<=1.0","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_717569636b2d7461626c65811c9dc5_gen.json b/internal/data/assets/plugin_717569636b2d7461626c65811c9dc5_gen.json new file mode 100644 index 00000000..07f1a4b5 --- /dev/null +++ b/internal/data/assets/plugin_717569636b2d7461626c65811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/566be246-1722-44c0-aa18-bcf9d2a7ddc6/quick-table","title":"Quick Table <= 1.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'style' Shortcode Attribute\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:02:10","sources":[{"name":"Wordfence","remoteId":"566be246-1722-44c0-aa18-bcf9d2a7ddc6"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/566be246-1722-44c0-aa18-bcf9d2a7ddc6?source=api-prod","cve":"CVE-2026-6237","affectedVersions":"<=1.0.0","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_726174652d737461722d726576696577811c9dc5_gen.json b/internal/data/assets/plugin_726174652d737461722d726576696577811c9dc5_gen.json index 5bf3964b..8ede2a86 100644 --- a/internal/data/assets/plugin_726174652d737461722d726576696577811c9dc5_gen.json +++ b/internal/data/assets/plugin_726174652d737461722d726576696577811c9dc5_gen.json @@ -1 +1 @@ -[{"advisoryId":"WPSECADV/WF/025a13e6-5f0a-49ca-bd63-44e4095072bd/rate-star-review","title":"Rate Star Review <= 1.5.1 - Reflected Cross-Site Scripting\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2024-01-03 00:00:00","sources":[{"name":"Wordfence","remoteId":"025a13e6-5f0a-49ca-bd63-44e4095072bd"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/025a13e6-5f0a-49ca-bd63-44e4095072bd?source=api-prod","cve":"CVE-2023-52213","affectedVersions":"<=1.5.1","severity":"medium"},{"advisoryId":"WPSECADV/WF/eb5a85ba-9545-4d64-ac7c-6b856e4ab354/rate-star-review","title":"Rate Star Review Vote – AJAX Reviews, Votes, Star Ratings <= 1.6.3 - Authenticated (Contributor+) Stored Cross-Site Scripting\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2025-01-17 00:00:00","sources":[{"name":"Wordfence","remoteId":"eb5a85ba-9545-4d64-ac7c-6b856e4ab354"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/eb5a85ba-9545-4d64-ac7c-6b856e4ab354?source=api-prod","cve":"CVE-2024-13392","affectedVersions":"<=1.6.3","severity":"medium"}] \ No newline at end of file +[{"advisoryId":"WPSECADV/WF/025a13e6-5f0a-49ca-bd63-44e4095072bd/rate-star-review","title":"Rate Star Review <= 1.5.1 - Reflected Cross-Site Scripting\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2024-01-03 00:00:00","sources":[{"name":"Wordfence","remoteId":"025a13e6-5f0a-49ca-bd63-44e4095072bd"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/025a13e6-5f0a-49ca-bd63-44e4095072bd?source=api-prod","cve":"CVE-2023-52213","affectedVersions":"<=1.5.1","severity":"medium"},{"advisoryId":"WPSECADV/WF/107cb15f-4b2e-4ed4-8e8a-4f716f4873db/rate-star-review","title":"Rate Star Review Vote <= 1.6.4 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Modification via 'rating_id' Parameter\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:07:44","sources":[{"name":"Wordfence","remoteId":"107cb15f-4b2e-4ed4-8e8a-4f716f4873db"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/107cb15f-4b2e-4ed4-8e8a-4f716f4873db?source=api-prod","cve":"CVE-2026-4301","affectedVersions":"<=1.6.4","severity":"medium"},{"advisoryId":"WPSECADV/WF/eb5a85ba-9545-4d64-ac7c-6b856e4ab354/rate-star-review","title":"Rate Star Review Vote – AJAX Reviews, Votes, Star Ratings <= 1.6.3 - Authenticated (Contributor+) Stored Cross-Site Scripting\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2025-01-17 00:00:00","sources":[{"name":"Wordfence","remoteId":"eb5a85ba-9545-4d64-ac7c-6b856e4ab354"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/eb5a85ba-9545-4d64-ac7c-6b856e4ab354?source=api-prod","cve":"CVE-2024-13392","affectedVersions":"<=1.6.3","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_73637261746368626c6f636b732d666f722d7770811c9dc5_gen.json b/internal/data/assets/plugin_73637261746368626c6f636b732d666f722d7770811c9dc5_gen.json new file mode 100644 index 00000000..224933d2 --- /dev/null +++ b/internal/data/assets/plugin_73637261746368626c6f636b732d666f722d7770811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/cf64f1c5-257d-49b2-b626-eaa4592b8335/scratchblocks-for-wp","title":"scratchblocks for WP <= 1.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'element' Shortcode Attribute\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:02:23","sources":[{"name":"Wordfence","remoteId":"cf64f1c5-257d-49b2-b626-eaa4592b8335"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/cf64f1c5-257d-49b2-b626-eaa4592b8335?source=api-prod","cve":"CVE-2026-6247","affectedVersions":"<=1.0.1","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_73686f7274636f64656c79811c9dc5_gen.json b/internal/data/assets/plugin_73686f7274636f64656c79811c9dc5_gen.json new file mode 100644 index 00000000..b8e7cfe4 --- /dev/null +++ b/internal/data/assets/plugin_73686f7274636f64656c79811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/08ef43cc-42ea-43bd-a590-4f9b2c719491/shortcodely","title":"Shortcodely <= 1.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'widget_area' Shortcode Attribute\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:04:55","sources":[{"name":"Wordfence","remoteId":"08ef43cc-42ea-43bd-a590-4f9b2c719491"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/08ef43cc-42ea-43bd-a590-4f9b2c719491?source=api-prod","cve":"CVE-2026-6913","affectedVersions":"<=1.0.1","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_736b7973612d746578742d7469636b65722d617070811c9dc5_gen.json b/internal/data/assets/plugin_736b7973612d746578742d7469636b65722d617070811c9dc5_gen.json new file mode 100644 index 00000000..57599572 --- /dev/null +++ b/internal/data/assets/plugin_736b7973612d746578742d7469636b65722d617070811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/bcd5b83a-7d51-455b-bb31-dd776264fc6b/skysa-text-ticker-app","title":"Skysa Text Ticker App <= 1.4 - Cross-Site Request Forgery to Settings Modification via 'Save Settings' Form\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:04:42","sources":[{"name":"Wordfence","remoteId":"bcd5b83a-7d51-455b-bb31-dd776264fc6b"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/bcd5b83a-7d51-455b-bb31-dd776264fc6b?source=api-prod","cve":"CVE-2026-6710","affectedVersions":"<=1.4","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_736c656b2d676174657761792d666f722d776f6f636f6d6d65726365811c9dc5_gen.json b/internal/data/assets/plugin_736c656b2d676174657761792d666f722d776f6f636f6d6d65726365811c9dc5_gen.json new file mode 100644 index 00000000..5f1fbd91 --- /dev/null +++ b/internal/data/assets/plugin_736c656b2d676174657761792d666f722d776f6f636f6d6d65726365811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/45ccc116-866e-467f-8ebb-8a3b6589c069/slek-gateway-for-woocommerce","title":"Slek Gateway for WooCommerce <= 1.0 - Unauthenticated Insufficiently Protected Credentials via Payment Redirect Form Hidden Fields\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:06:11","sources":[{"name":"Wordfence","remoteId":"45ccc116-866e-467f-8ebb-8a3b6589c069"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/45ccc116-866e-467f-8ebb-8a3b6589c069?source=api-prod","cve":"CVE-2026-7626","affectedVersions":"<=1.0","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_736d6172742d6170706f696e746d656e742d626f6f6b696e67811c9dc5_gen.json b/internal/data/assets/plugin_736d6172742d6170706f696e746d656e742d626f6f6b696e67811c9dc5_gen.json index 44ec02d8..01713411 100644 --- a/internal/data/assets/plugin_736d6172742d6170706f696e746d656e742d626f6f6b696e67811c9dc5_gen.json +++ b/internal/data/assets/plugin_736d6172742d6170706f696e746d656e742d626f6f6b696e67811c9dc5_gen.json @@ -1 +1 @@ -[{"advisoryId":"WPSECADV/WF/bf332c0d-5481-412d-b44a-b3de346d7b60/smart-appointment-booking","title":"Smart Appointment & Booking <= 1.0.7 - Authenticated (Subscriber+) Stored Cross-Site Scripting via saab_save_form_data AJAX Action\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-02-03 19:43:03","sources":[{"name":"Wordfence","remoteId":"bf332c0d-5481-412d-b44a-b3de346d7b60"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/bf332c0d-5481-412d-b44a-b3de346d7b60?source=api-prod","cve":"CVE-2026-0742","affectedVersions":"<=1.0.7","severity":"medium"}] \ No newline at end of file +[{"advisoryId":"WPSECADV/WF/afc3531d-6134-4b45-b532-37430d96a8fb/smart-appointment-booking","title":"Smart Appointment & Booking <= 1.0.8 - Missing Authorization to Unauthenticated Arbitrary Booking Cancellation\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:03:39","sources":[{"name":"Wordfence","remoteId":"afc3531d-6134-4b45-b532-37430d96a8fb"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/afc3531d-6134-4b45-b532-37430d96a8fb?source=api-prod","cve":"CVE-2026-5693","affectedVersions":"<=1.0.8","severity":"medium"},{"advisoryId":"WPSECADV/WF/bf332c0d-5481-412d-b44a-b3de346d7b60/smart-appointment-booking","title":"Smart Appointment & Booking <= 1.0.7 - Authenticated (Subscriber+) Stored Cross-Site Scripting via saab_save_form_data AJAX Action\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-02-03 19:43:03","sources":[{"name":"Wordfence","remoteId":"bf332c0d-5481-412d-b44a-b3de346d7b60"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/bf332c0d-5481-412d-b44a-b3de346d7b60?source=api-prod","cve":"CVE-2026-0742","affectedVersions":"<=1.0.7","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_736f757263652d73686f7274636f6465811c9dc5_gen.json b/internal/data/assets/plugin_736f757263652d73686f7274636f6465811c9dc5_gen.json new file mode 100644 index 00000000..e7028295 --- /dev/null +++ b/internal/data/assets/plugin_736f757263652d73686f7274636f6465811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/bbe7beae-2803-463c-83ad-5a58c4a55a65/source-shortcode","title":"Credits Shortcode <= 1.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'link' Shortcode Attribute\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:02:35","sources":[{"name":"Wordfence","remoteId":"bbe7beae-2803-463c-83ad-5a58c4a55a65"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/bbe7beae-2803-463c-83ad-5a58c4a55a65?source=api-prod","cve":"CVE-2026-6256","affectedVersions":"<=1.2","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_73702d626c6f672d64657369676e6572811c9dc5_gen.json b/internal/data/assets/plugin_73702d626c6f672d64657369676e6572811c9dc5_gen.json index 11927436..129bf7fe 100644 --- a/internal/data/assets/plugin_73702d626c6f672d64657369676e6572811c9dc5_gen.json +++ b/internal/data/assets/plugin_73702d626c6f672d64657369676e6572811c9dc5_gen.json @@ -1 +1 @@ -[{"advisoryId":"WPSECADV/WF/1e82f614-b6f0-4e78-a337-a286a33f91e6/sp-blog-designer","title":"SP Blog Designer <= 1.0.0 - Unauthenticated Arbitrary Shortcode Execution\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2025-03-31 00:00:00","sources":[{"name":"Wordfence","remoteId":"1e82f614-b6f0-4e78-a337-a286a33f91e6"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/1e82f614-b6f0-4e78-a337-a286a33f91e6?source=api-prod","cve":"CVE-2025-31606","affectedVersions":"<=1.0.0","severity":"medium"},{"advisoryId":"WPSECADV/WF/b12a25e1-98a7-427b-85b0-8503f74687d5/sp-blog-designer","title":"SP Blog Designer <= 1.0.0 - Authenticated (Contributor+) Local File Inclusion\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2024-11-20 00:00:00","sources":[{"name":"Wordfence","remoteId":"b12a25e1-98a7-427b-85b0-8503f74687d5"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/b12a25e1-98a7-427b-85b0-8503f74687d5?source=api-prod","cve":"CVE-2024-52498","affectedVersions":"<=1.0.0","severity":"high"}] \ No newline at end of file +[{"advisoryId":"WPSECADV/WF/1e82f614-b6f0-4e78-a337-a286a33f91e6/sp-blog-designer","title":"SP Blog Designer <= 1.0.0 - Unauthenticated Arbitrary Shortcode Execution\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2025-03-31 00:00:00","sources":[{"name":"Wordfence","remoteId":"1e82f614-b6f0-4e78-a337-a286a33f91e6"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/1e82f614-b6f0-4e78-a337-a286a33f91e6?source=api-prod","cve":"CVE-2025-31606","affectedVersions":"<=1.0.0","severity":"medium"},{"advisoryId":"WPSECADV/WF/705b1da0-df92-40c2-a608-ccad32a9c224/sp-blog-designer","title":"SP Blog Designer <= 1.0.0 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'design' Attribute\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:07:14","sources":[{"name":"Wordfence","remoteId":"705b1da0-df92-40c2-a608-ccad32a9c224"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/705b1da0-df92-40c2-a608-ccad32a9c224?source=api-prod","cve":"CVE-2026-4859","affectedVersions":"<=1.0.0","severity":"medium"},{"advisoryId":"WPSECADV/WF/b12a25e1-98a7-427b-85b0-8503f74687d5/sp-blog-designer","title":"SP Blog Designer <= 1.0.0 - Authenticated (Contributor+) Local File Inclusion\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2024-11-20 00:00:00","sources":[{"name":"Wordfence","remoteId":"b12a25e1-98a7-427b-85b0-8503f74687d5"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/b12a25e1-98a7-427b-85b0-8503f74687d5?source=api-prod","cve":"CVE-2024-52498","affectedVersions":"<=1.0.0","severity":"high"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_746d2d776f726470726573732d7265646972656374696f6e811c9dc5_gen.json b/internal/data/assets/plugin_746d2d776f726470726573732d7265646972656374696f6e811c9dc5_gen.json new file mode 100644 index 00000000..4ae70c9a --- /dev/null +++ b/internal/data/assets/plugin_746d2d776f726470726573732d7265646972656374696f6e811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/82caf69a-2423-4f0f-9cf2-7d4fe428e915/tm-wordpress-redirection","title":"Tm – WordPress Redirection <= 1.2 - Cross-Site Request Forgery to Stored Cross-Site Scripting\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:05:20","sources":[{"name":"Wordfence","remoteId":"82caf69a-2423-4f0f-9cf2-7d4fe428e915"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/82caf69a-2423-4f0f-9cf2-7d4fe428e915?source=api-prod","cve":"CVE-2026-7561","affectedVersions":"<=1.2","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_766f796167652d706c7573811c9dc5_gen.json b/internal/data/assets/plugin_766f796167652d706c7573811c9dc5_gen.json new file mode 100644 index 00000000..76b91112 --- /dev/null +++ b/internal/data/assets/plugin_766f796167652d706c7573811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/8daa0321-e8cc-416d-ad0e-173e316caf83/voyage-plus","title":"Voyage Plus <= 1.0.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'post-content' Shortcode\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:04:30","sources":[{"name":"Wordfence","remoteId":"8daa0321-e8cc-416d-ad0e-173e316caf83"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/8daa0321-e8cc-416d-ad0e-173e316caf83?source=api-prod","cve":"CVE-2026-5715","affectedVersions":"<=1.0.6","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_776f6f2d636f6d6d657263652d6d696e2d776569676874811c9dc5_gen.json b/internal/data/assets/plugin_776f6f2d636f6d6d657263652d6d696e2d776569676874811c9dc5_gen.json new file mode 100644 index 00000000..bf5a2a43 --- /dev/null +++ b/internal/data/assets/plugin_776f6f2d636f6d6d657263652d6d696e2d776569676874811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/b2c44c95-6a00-4c56-967b-003ce307f90c/woo-commerce-min-weight","title":"Woo Commerce Minimum Weight <= 3.0.1 - Cross-Site Request Forgery via Settings Update Form\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:07:02","sources":[{"name":"Wordfence","remoteId":"b2c44c95-6a00-4c56-967b-003ce307f90c"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/b2c44c95-6a00-4c56-967b-003ce307f90c?source=api-prod","cve":"CVE-2026-6932","affectedVersions":"<=3.0.1","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_77702d676f6f676c652d6d6170732d696e746567726174696f6e811c9dc5_gen.json b/internal/data/assets/plugin_77702d676f6f676c652d6d6170732d696e746567726174696f6e811c9dc5_gen.json new file mode 100644 index 00000000..ae08d37e --- /dev/null +++ b/internal/data/assets/plugin_77702d676f6f676c652d6d6170732d696e746567726174696f6e811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/bd9ef48f-b501-4fca-a6a5-78452c316497/wp-google-maps-integration","title":"WP Google Maps Integration <= 1.2 - Reflected Cross-Site Scripting via 'page' Parameter\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:06:36","sources":[{"name":"Wordfence","remoteId":"bd9ef48f-b501-4fca-a6a5-78452c316497"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/bd9ef48f-b501-4fca-a6a5-78452c316497?source=api-prod","cve":"CVE-2026-7464","affectedVersions":"<=1.2","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_77702d7265646972656374696f6e811c9dc5_gen.json b/internal/data/assets/plugin_77702d7265646972656374696f6e811c9dc5_gen.json new file mode 100644 index 00000000..0d869012 --- /dev/null +++ b/internal/data/assets/plugin_77702d7265646972656374696f6e811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/15177d1b-ef48-49e3-9bd9-34262ed2c134/wp-redirection","title":"WP-Redirection <= 1.0.3 - Cross-Site Request Forgery to Settings Update\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:05:33","sources":[{"name":"Wordfence","remoteId":"15177d1b-ef48-49e3-9bd9-34262ed2c134"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/15177d1b-ef48-49e3-9bd9-34262ed2c134?source=api-prod","cve":"CVE-2026-7562","affectedVersions":"<=1.0.3","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets/plugin_7a61776779692d656d626564811c9dc5_gen.json b/internal/data/assets/plugin_7a61776779692d656d626564811c9dc5_gen.json new file mode 100644 index 00000000..f3d7c4e2 --- /dev/null +++ b/internal/data/assets/plugin_7a61776779692d656d626564811c9dc5_gen.json @@ -0,0 +1 @@ +[{"advisoryId":"WPSECADV/WF/86a85e07-8359-441f-abb4-a1ca6083e6cd/zawgyi-embed","title":"Zawgyi Embed <= 2.1.1 - Cross-Site Request Forgery via 'zawgyi_forceCSS' Parameter\n### Copyright 1999-2026 The MITRE Corporation\nCVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE®). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.\nhttps://www.cve.org/Legal/TermsOfUse\n### Copyright 2012-2026 Defiant Inc.\nDefiant hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute this software vulnerability information. Any copy of the software vulnerability information you make for such purposes is authorized provided that you include a hyperlink to this vulnerability record and reproduce Defiant's copyright designation and this license in any such copy.\nhttps://www.wordfence.com/wordfence-intelligence-terms-and-conditions/","reportedAt":"2026-05-11 19:05:58","sources":[{"name":"Wordfence","remoteId":"86a85e07-8359-441f-abb4-a1ca6083e6cd"}],"link":"https://www.wordfence.com/threat-intel/vulnerabilities/id/86a85e07-8359-441f-abb4-a1ca6083e6cd?source=api-prod","cve":"CVE-2026-7616","affectedVersions":"<=2.1.1","severity":"medium"}] \ No newline at end of file diff --git a/internal/data/assets_gen_test.go b/internal/data/assets_gen_test.go index 7f6256ac..1490ea28 100644 --- a/internal/data/assets_gen_test.go +++ b/internal/data/assets_gen_test.go @@ -503,6 +503,7 @@ func plugins() []string { "advanced-search-by-my-solr-server", "advanced-sermons", "advanced-settings", + "advanced-social-media-icons", "advanced-speed-increaser", "advanced-tag-list", "advanced-testimonial-carousel-for-elementor", @@ -595,6 +596,7 @@ func plugins() []string { "ai-content-pipelines", "ai-content-writing-assistant", "ai-copilot", + "ai-copilot-content-generator", "ai-engine", "ai-engine-pro", "ai-feeds", @@ -1212,6 +1214,7 @@ func plugins() []string { "awesome-hotel-booking", "awesome-logo-carousel-block", "awesome-logos", + "awesome-pricing-tables-lite-by-optimalplugins", "awesome-progess-bar", "awesome-responsive-photo-gallery", "awesome-shortcodes", @@ -1250,6 +1253,7 @@ func plugins() []string { "azindex", "azon-addon-js-composer", "azonbox", + "azonpost", "azurecurve-bbcode", "azurecurve-floating-featured-image", "azurecurve-shortcodes-in-comments", @@ -1677,6 +1681,7 @@ func plugins() []string { "bootstrap-collapse", "bootstrap-modals", "bootstrap-multi-language-responsive-portfolio", + "bootstrap-shortcode", "bootstrap-shortcodes", "border-loading-bar", "borderless", @@ -4502,6 +4507,7 @@ func plugins() []string { "fancy-elementor-flipbox", "fancy-facebook-comments", "fancy-gallery", + "fancy-image-show", "fancy-product-designer", "fancy-roller-scroller", "fancy-user-listing", @@ -4910,6 +4916,7 @@ func plugins() []string { "forms-for-campaign-monitor", "forms-for-divi", "forms-gutenberg", + "forms-rb", "forms-to-zapier", "formsite", "formstack", @@ -5444,6 +5451,7 @@ func plugins() []string { "grandrestaurant-elementor", "graph-lite", "graphcomment-comment-system", + "graphic-web-design-inc", "graphicsly", "graphina-elementor-charts-and-graphs", "graphist-elementor", @@ -5638,6 +5646,7 @@ func plugins() []string { "heateor-social-comments", "heateor-social-login", "hebrewdates", + "hel-online-classroom", "hello-event-widgets-for-elementor", "hello-in-all-languages", "hello-world", @@ -7964,6 +7973,7 @@ func plugins() []string { "next-page-not-next-post", "nextcart-woocommerce-migration", "nextcellent-gallery-nextgen-legacy", + "nextdate", "nextend-facebook-connect", "nextend-smart-slider3-pro", "nextend-social-login-pro", @@ -9348,6 +9358,7 @@ func plugins() []string { "quick-restaurant-menu", "quick-restaurant-reservations", "quick-subscribe", + "quick-table", "quick-testimonials", "quick-view-and-buy-now-for-woocommerce", "quickcab", @@ -10023,6 +10034,7 @@ func plugins() []string { "scottcart", "scoutnet-kalender", "scratch-win-giveaways-for-website-facebook", + "scratchblocks-for-wp", "screenshot-machine-shortcode", "screets-lcx", "scribble-maps", @@ -10363,6 +10375,7 @@ func plugins() []string { "shortcode-to-display-post-and-user-data", "shortcode-variables", "shortcodehub", + "shortcodely", "shortcoder", "shortcodes-anywhere", "shortcodes-bootstrap", @@ -10767,11 +10780,13 @@ func plugins() []string { "skyboot-portfolio-gallery", "skype-online-status", "skysa-official", + "skysa-text-ticker-app", "skyword-plugin", "sl-user-create", "slash-admin", "slazzer-background-changer", "sleekplan", + "slek-gateway-for-woocommerce", "sliced-invoices", "slicewp", "slick-contact-forms", @@ -11058,6 +11073,7 @@ func plugins() []string { "soundst-seo-search", "soundy-audio-playlist", "soundy-background-music", + "source-shortcode", "sourceafrica", "sourceplay-navermap", "south-pole-the-offset-movement", @@ -11895,6 +11911,7 @@ func plugins() []string { "tm-islamic-helper", "tm-replace-howdy", "tm-woocommerce-compare-wishlist", + "tm-wordpress-redirection", "tml-2fa", "tmm_content_composer", "tmm_paypal_checkout", @@ -12638,6 +12655,7 @@ func plugins() []string { "votecount-for-balatarin", "voting-record", "voucherpress", + "voyage-plus", "vp-sitemap", "vr-calendar-sync", "vr-frases", @@ -13080,6 +13098,7 @@ func plugins() []string { "woo-codice-fiscale", "woo-combo-offers", "woo-coming-soon-product", + "woo-commerce-min-weight", "woo-conditional-discount-rules-for-checkout", "woo-conditional-payment-gateways", "woo-conditional-product-fees-for-checkout", @@ -14070,6 +14089,7 @@ func plugins() []string { "wp-google-map-gold", "wp-google-map-plugin", "wp-google-maps", + "wp-google-maps-integration", "wp-google-maps-pro", "wp-google-my-business-auto-publish", "wp-google-places-review-slider", @@ -14481,6 +14501,7 @@ func plugins() []string { "wp-recipe-maker", "wp-recipe-manager", "wp-record", + "wp-redirection", "wp-register-profile-with-shortcode", "wp-registration", "wp-related-posts", @@ -15375,6 +15396,7 @@ func plugins() []string { "zarinpal-woocommerce-payment-gateway", "zartis-job-plugin", "zarzadzanie_kontem", + "zawgyi-embed", "zd-scribd-ipaper", "zd-youtube-flv-player", "zdstats",