File Manager [Authenticated Arbitrary File Download]
WordPress plugin File Manager doesn’t implement security checks when performing specific actions, thus leading to a Local File Disclosure vulnerability.
WordPress Plugins Authenticated Arbitrary File Download Local File Inclusion LFIQuick Page/Post Redirect Plugin [Unvalidated Redirects and Forwards]
Quick Page/Post Redirect Plugin suffers from a Unvalidated Redirects and Forwards vulnerability through Privilege Escalation.
WordPress Plugins Unvalidated Redirects and ForwardsSubscribe2 [Sensitive Data Exposure]
WordPress Plugins Sensitive Data Exposure
Gallery – Flagallery Photo Portfolio [CSRF → File Upload]
Gallery – Flagallery Photo Portfolio WordPress plugin suffers from a CSRF vulnerability that could lead to arbitrary file uploads.
WordPress Plugins CSRFForm Maker by WD [CSRF → LFI]
Multiple CSRF issues in Form Maker by WD WordPress plugin.
WordPress Plugins CSRF