pickplugins
Web & CMS Pluginscommercial
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting pickplugins.
- CVE-2026-10862Accordions <= 2.3.23 - Authenticated (Custom+) Stored Cross-Site Scripting via Accordion Body Field6.4
- CVE-2025-62745WordPress Team Showcase plugin <= 1.22.28 - Cross Site Scripting (XSS) vulnerability6.5
- CVE-2026-7458User Verification by PickPlugins <= 2.0.46 - Unauthenticated Authentication Bypass via OTP Verification REST API Endpoint9.8
- CVE-2026-32497WordPress User Verification plugin <= 2.0.45 - Email Verification Bypass vulnerability5.3
- CVE-2026-25455WordPress Product Slider for WooCommerce plugin <= 1.13.61 - Broken Access Control vulnerability6.5
- CVE-2025-68000WordPress Testimonial Slider plugin <= 2.0.15 - Broken Access Control vulnerability6.5
- CVE-2025-68605WordPress Post Grid and Gutenberg Blocks plugin <= 2.3.23 - Cross Site Scripting (XSS) vulnerability6.5
- CVE-2025-63043WordPress Post Grid and Gutenberg Blocks plugin <= 2.3.23 - Insecure Direct Object References (IDOR) vulnerability5.3
- CVE-2025-66058WordPress Post Grid and Gutenberg Blocks plugin <= 2.3.17 - Broken Access Control vulnerability6.5
- CVE-2025-12374Email Verification, Email OTP, Block Spam Email, Passwordless login, Hide Login, Magic Login – User Verification <= 2.0.44 - Authentication Bypass to Account Takeover9.8
- CVE-2025-62929WordPress Testimonial Slider plugin <= 2.0.15 - Broken Access Control vulnerability6.5
- CVE-2025-62924WordPress Post Grid and Gutenberg Blocks plugin <= 2.3.17 - Broken Access Control vulnerability6.5
- CVE-2025-53421WordPress Accordion plugin <= 2.3.14 - Broken Access Control vulnerability6.5
- CVE-2025-60162WordPress Job Board Manager Plugin <= 2.1.61 - Cross Site Scripting (XSS) Vulnerability6.5
- CVE-2025-58678WordPress Accordion Plugin <= 2.3.15 - Broken Access Control Vulnerability6.5