Known Vulnerabilities for products from Wpdevart

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Wpdevart".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-25435 json Not Provided 2026-03-25 2026-03-25
CVE-2025-62886 json Not Provided 2025-10-27 2026-04-01
CVE-2025-47443 json Not Provided 2025-05-07 2026-04-01
CVE-2025-24719 json Not Provided 2025-01-24 2026-04-01
CVE-2023-47533 json ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... 4.8 - MEDIUM 2023-11-14 2023-11-17
CVE-2023-46075 json Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in wpdevart Contact Form Builder, Contact Widget plugin <= 2.1.6 ... 6.1 - MEDIUM 2023-10-26 2023-11-03
CVE-2023-45630 json Unauth. Stored Cross-Site Scripting (XSS) vulnerability in wpdevart Gallery – Image and Video Gallery with Thumbnails plugi... 6.1 - MEDIUM 2023-10-18 2023-10-25
CVE-2023-45629 json Cross-Site Request Forgery (CSRF) vulnerability in wpdevart Gallery – Image and Video Gallery with Thumbnails plugin <= 2.... 8.8 - HIGH 2023-10-16 2024-02-01
CVE-2023-24388 json Cross-Site Request Forgery (CSRF) vulnerability in WpDevArt Booking calendar, Appointment Booking System plugin <= 3.2.3 vers... 5.4 - MEDIUM 2023-02-17 2023-11-07
CVE-2023-24387 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPdevart Organization chart plugin <= 1.4.4 versions. 4.8 - MEDIUM 2023-04-06 2023-11-07
CVE-2023-24384 json Cross-Site Request Forgery (CSRF) vulnerability in WpDevArt Organization chart <= 1.4.4 versions. 8.8 - HIGH 2023-02-23 2023-11-07
CVE-2023-24004 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPdevart Image and Video Lightbox, Image PopUp plugin <= 2.... 4.8 - MEDIUM 2023-04-06 2023-11-07
CVE-2023-24002 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in WPdevart YouTube Embed, Playlist and Popup by WpDevArt plug... 4.8 - MEDIUM 2023-04-06 2023-11-07
CVE-2023-23983 json Cross-Site Request Forgery (CSRF) vulnerability in wpdevart Responsive Vertical Icon Menu plugin <= 1.5.8 can lead to theme d... 5.4 - MEDIUM 2023-02-28 2023-11-07
CVE-2023-23972 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Smplug-in Social Like Box and Page by WpDevArt plugin <= 0.... 4.8 - MEDIUM 2023-04-06 2023-11-07
CVE-2023-23870 json Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in wpdevart Responsive Vertical Icon Menu plugin <= 1.5.8 vers... 4.8 - MEDIUM 2023-04-04 2023-11-07
CVE-2023-0900 json The Pricing Table Builder WordPress plugin through 1.1.6 does not properly sanitise and escape a parameter before using it in... 7.2 - HIGH 2023-06-05 2023-11-07
CVE-2023-0177 json The Social Like Box and Page by WpDevArt WordPress plugin before 0.8.41 does not validate and escape some of its shortcode at... 5.4 - MEDIUM 2023-02-13 2023-11-07
CVE-2022-47603 json Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in wpdevart Gallery – Image and Video Gallery with Thumbnails pl... 6.1 - MEDIUM 2023-03-29 2023-11-07
CVE-2022-47438 json Auth. (editor+) Stored Cross-Site Scripting (XSS) vulnerability in WpDevArt Booking calendar, Appointment Booking System plug... 5.4 - MEDIUM 2023-03-29 2023-11-07

Known software with vulnerabilities from Wpdevart

Type Vendor Product Version
ApplicationWpdevartBooking Calendar1.0.0
ApplicationWpdevartResponsive Image Gallery1.2.0