5203 | Local File XSS Vulnerability in Wordpress.com (Write Up) |
XSS |
WordPress |
Evan Ricafort (@evanricafort) |
Bug Bounty | 2015-12-21 | 2023-06-13 |
4853 | [RCE] Remote Code Execution in Wordpress iOS Application (version 9.3) |
RCE
iOS |
WordPress |
Evan Ricafort (@evanricafort) |
Bug Bounty | 2018-02-21 | 2023-06-13 |
4832 | Leaking WordPress CSRF Tokens for Fun, $1337 bounty, and CVE-2017-5489 |
CSRF |
WordPress |
Abdullah Hussam (@Abdulahhusam) |
Bug Bounty | 2018-03-15 | 2023-06-13 |
4620 | Reflected Swf XSS at ( https://plugins.svn.wordpress.org ) |
Flash XSS
Reflected XSS |
WordPress |
Mohamed Haron (@m7mdharon) |
Bug Bounty | 2018-09-07 | 2023-06-13 |
4490 | WordPress Design Flaw Leads to WooCommerce RCE |
RCE |
Automattic (WooCommerce) |
Simon Scannell (@scannell_simon) |
Bug Bounty | 2018-11-06 | 2023-06-13 |
4405 | WordPress Privilege Escalation through Post Types |
Privilege escalation
Stored XSS
Object injection |
WordPress |
Simon Scannell (@scannell_simon) |
Bug Bounty | 2018-12-17 | 2023-06-13 |
4389 | How I Takeover Wordpress Admin fiiipay.my |
Account takeover
CMS default files |
FiiiPay |
Syahrul Akbar Rohmani (@sahruldotid) |
Bug Bounty | 2018-12-28 | 2023-06-13 |
4324 | Reverse RDP Attack: Code Execution on RDP Clients |
Path traversal |
Microsoft |
Eyal Itkin |
Bug Bounty | 2019-02-05 | 2023-06-13 |
4252 | WordPress 5.1 CSRF to Remote Code Execution |
CSRF
RCE
HTML injection |
WordPress |
Simon Scannell (@scannell_simon) |
Bug Bounty | 2019-03-13 | 2023-06-13 |
3931 | H1-4420: From Quiz to Admin - Chaining Two 0-Days to Compromise An Uber Wordpress |
Stored XSS
SQL injection |
Uber |
Julien Ahrens (@MrTuxracer) |
Bug Bounty | 2019-09-10 | 2023-06-13 |
3532 | Misconfigured WordPress takeover to Remote Code Execution |
Wordpress takeover
RCE
Security misconfiguration |
NA |
Smaran Chand (@smaranchand) |
Bug Bounty | 2020-04-22 | 2023-06-13 |
3382 | A subtle stored-XSS in WordPress core |
Stored XSS
RCE |
WordPress |
Sam Thomas (@_s_n_t) |
Bug Bounty | 2020-06-17 | 2023-06-13 |
3073 | Error-Based SQL Injection on a WordPress website and extract more than 150k user details |
SQL injection |
NA |
Ynoof Alassiri |
Bug Bounty | 2020-10-27 | 2023-06-13 |
2983 | [CVE-2019-17674 & CVE-2020-11025] Stored XSS through navigation menu item edited in Customizer in Wordpress (Write Up) |
Stored XSS |
WordPress |
Evan Ricafort (@evanricafort) |
Bug Bounty | 2020-12-06 | 2023-06-13 |
2603 | WordPress 5.7 XXE Vulnerability |
XXE |
WordPress |
Sonar (@SonarSource) |
Bug Bounty | 2021-04-27 | 2023-06-13 |
2281 | ATO of WordPress Website “4 digits €€€€ Bounty in 5 Minute!” |
Exposed registration page
Account takeover |
NA |
Ritesh Gohil (@RiteshG37659480) |
Bug Bounty | 2021-08-29 | 2023-06-13 |
2048 | WordPress Plugin Confusion: How an update can get you pwned |
Supply chain attack
WordPress plugin confusion
WordPress theme confusion |
NA |
Kamil Vavra (@vavkamil) |
Bug Bounty | 2021-11-25 | 2023-06-13 |
1926 | Attacking RDP from Inside: How we abused named pipes for smart-card hijacking, unauthorized file system access to client machines and more |
RCE |
Microsoft |
Gabriel Sztejnworcel (@sztejnworcel) |
Bug Bounty | 2022-01-11 | 2023-06-13 |
1908 | CVE-2022-21661: Exposing Database Info Via Wordpress SQL Injection |
SQL injection |
WordPress |
ngocnb |
Bug Bounty | 2022-01-18 | 2023-06-13 |
1857 | A technique to semi-automatically find vulnerabilities in WordPress plugins |
XSS
SQL injection
Open redirect
CSRF |
NA |
kazet (@kazet1234) |
Bug Bounty | 2022-02-03 | 2023-06-13 |
1836 | WordPress < 5.8.3 - Object Injection Vulnerability |
Object injection
RCE |
WordPress |
Simon Scannell (@scannell_simon) |
Bug Bounty | 2022-02-08 | 2023-06-13 |
1539 | Research: Auditing WordPress Plugins |
SQL injection
LFI
XSS
RCE |
NA |
cy//ective (@cyllective) |
Bug Bounty | 2022-05-20 | 2023-06-13 |
1537 | Pre-hijacked accounts: An Empirical Study of Security Failures in User Account Creation on the Web |
Account takeover
Pre-hijacking attack |
Dropbox
Meta / Facebook
LinkedIn
WordPress
Zoom |
Avinash Sudhodanan (@sudoavi) |
Bug Bounty | 2022-05-20 | 2023-06-13 |
1509 | Bypass CSP Using WordPress By Abusing Same Origin Method Execution |
CSP bypass
Same Origin Method Execution |
WordPress |
Paulos Yibelo (@PaulosYibelo) |
Bug Bounty | 2022-05-29 | 2023-06-13 |
1453 | That Pipe is Still Leaking: Revisiting the RDP Named Pipe Vulnerability |
RCE |
Microsoft |
Gabriel Sztejnworcel (@sztejnworcel) |
Bug Bounty | 2022-06-16 | 2023-06-13 |