Known Vulnerabilities for Post Shortcode by Post Shortcode Project
Listed below are 1 of the newest known vulnerabilities associated with "Post Shortcode" by "Post Shortcode Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-31916 json | Missing Authorization vulnerability in Iulia Cazan Latest Post Shortcode latest-post-shortcode allows Exploiting Incorrectly ... | Not Provided | 2026-03-13 | 2026-04-29 |
| CVE-2026-14343 json | The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'note_before' and 'note_after' Sho... | Not Provided | 2026-07-09 | 2026-07-09 |
| CVE-2026-13733 json | The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'no_data_msg' Shortcode Attribute ... | Not Provided | 2026-07-01 | 2026-07-01 |
| CVE-2026-12119 json | The Simple File List plugin for WordPress is vulnerable to unauthorized file operations due to a missing authorization check ... | Not Provided | 2026-06-20 | 2026-06-22 |
| CVE-2026-11900 json | The Ad Inserter – Ad Manager & AdSense Ads plugin for WordPress is vulnerable to Insecure Direct Object Reference in versio... | Not Provided | 2026-07-03 | 2026-07-07 |
| CVE-2026-10780 json | The Static Block plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including,... | Not Provided | 2026-06-16 | 2026-06-16 |
| CVE-2026-10095 json | The WP Photo Album Plus plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'subtext' parameter in all ... | Not Provided | 2026-07-01 | 2026-07-01 |
| CVE-2026-10092 json | The Cincopa video and media plug-in plugin for WordPress is vulnerable to Stored Cross-Site Scripting via cincopa Shortcode i... | Not Provided | 2026-06-24 | 2026-06-24 |
| CVE-2026-10089 json | The Insert Pages plugin for WordPress is vulnerable to Stored Cross-Site Scripting via post custom field keys (meta key names... | Not Provided | 2026-07-02 | 2026-07-02 |
| CVE-2026-9757 json | The GEO my WP plugin for WordPress is vulnerable to SQL Injection via the 'swlatlng' and 'nelatlng' parameters in all version... | Not Provided | 2026-05-30 | 2026-06-01 |