2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2017-18575The newstatpress plugin before 1.2.5 for WordPress has multiple stored XSS issues.
CVE-2017-18574The ninja-forms plugin before 3.0.31 for WordPress has insufficient HTML escaping in the builder.
CVE-2017-18573The simple-login-log plugin before 1.1.2 for WordPress has SQL injection.
CVE-2017-18572The gnucommerce plugin before 1.4.2 for WordPress has XSS.
CVE-2017-18571The search-everything plugin before 8.1.7 for WordPress has SQL injection related to WordPress 4.7.x, a different vulner...
CVE-2017-18570The cforms2 plugin before 14.13 for WordPress has SQL injection in the tracking DB GUI via Delete Entries or Download En...
CVE-2017-18562The error-log-viewer plugin before 1.0.6 for WordPress has multiple XSS issues.
CVE-2017-18561The embed-comment-images plugin before 0.6 for WordPress has XSS.
CVE-2017-18535The smokesignal plugin before 1.2.7 for WordPress has XSS.
CVE-2017-18525The megamenu plugin before 2.4 for WordPress has XSS.
CVE-2017-18521The democracy-poll plugin before 5.4 for WordPress has CSRF via wp-admin/options-general.php?page=democracy-poll&subpage...
CVE-2017-18516The bws-linkedin plugin before 1.0.5 for WordPress has multiple XSS issues.
CVE-2017-18564The sender plugin before 1.2.1 for WordPress has multiple XSS issues.
CVE-2017-18563The rsvp plugin before 2.3.8 for WordPress has persistent XSS via the note field on the attendee-list screen.
CVE-2017-18565The updater plugin before 1.35 for WordPress has multiple XSS issues.
CVE-2017-18560The content-audit plugin before 1.9.2 for WordPress has XSS.
CVE-2017-18558The bws-testimonials plugin before 0.1.9 for WordPress has multiple XSS issues.
CVE-2017-18557The bws-google-maps plugin before 1.3.6 for WordPress has multiple XSS issues.
CVE-2017-18556The bws-google-analytics plugin before 1.7.1 for WordPress has multiple XSS issues.
CVE-2017-18555The booking-sms plugin before 1.1.0 for WordPress has XSS.
CVE-2017-18554The analytics-tracker plugin before 1.1.1 for WordPress has XSS via a search event.
CVE-2017-18553The ad-buttons plugin before 2.3.2 for WordPress has XSS.
CVE-2017-18537The visitors-online plugin before 1.0.0 for WordPress has multiple XSS issues.
CVE-2017-18536The stop-user-enumeration plugin before 1.3.8 for WordPress has XSS.
CVE-2017-18534The share-on-diaspora plugin before 0.7.2 for WordPress has reflected XSS in share URL parameters.

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now