We have discovered 680,236 live websites that are affected by CWE-502.
![]() | 242,059 websites |
![]() | 72,357 websites |
![]() | 35,946 websites |
![]() | 24,675 websites |
![]() | 24,447 websites |
![]() | 21,597 websites |
![]() | 21,059 websites |
![]() | 18,621 websites |
![]() | 15,483 websites |
![]() | 15,097 websites |
.com | 289,233 websites |
.org | 35,879 websites |
.de | 35,191 websites |
.co.uk | 18,318 websites |
.nl | 18,142 websites |
.it | 17,076 websites |
.net | 16,933 websites |
.fr | 14,205 websites |
.com.au | 13,591 websites |
.ru | 12,976 websites |
Discovered | CVE | Description | Websites |
---|---|---|---|
Apr, 2025 | CVE-2025-27286 | WordPress Saoshyant Slider Plugin <= 3.0 - PHP Object Injection vulnerability | 37 |
Apr, 2025 | CVE-2025-32571 | WordPress TuriTop Booking System Plugin <= 1.0.10 - PHP Object Injection vulnerability | 61 |
Apr, 2025 | CVE-2025-32572 | WordPress Kata Plus Plugin <= 1.5.2 - PHP Object Injection vulnerability | 48 |
Apr, 2025 | CVE-2025-32658 | WordPress HelpGent plugin <= 2.2.4 - PHP Object Injection vulnerability | 5 |
Apr, 2025 | CVE-2025-32662 | WordPress uListing plugin <= 2.2.0 - Deserialization of untrusted data vulnerability | 251 |
Apr, 2025 | CVE-2025-32686 | WordPress Team Members <= 3.4.0 - PHP Object Injection Vulnerability | 179 |
Apr, 2025 | CVE-2025-39527 | WordPress Rating by BestWebSoft <= 1.7 - PHP Object Injection Vulnerability | 124 |
Apr, 2025 | CVE-2025-39588 | WordPress Ultimate Store Kit Elementor Addons <= 2.4.0 - Deserialization of untrusted data Vulnerability | 82 |
Apr, 2025 | CVE-2025-30985 | WordPress GNUCommerce plugin <= 1.5.4 - PHP Object Injection vulnerability | 68 |
Apr, 2025 | CVE-2025-3439 | Everest Forms – Contact Form, Quiz, Survey, Newsletter & Payment Form Builder for WordPress <= 3.1.1 - Unauthenticated PHP Object Injection | 28,547 |
Discovered | CVE | Description | Websites |
---|---|---|---|
Dec, 2023 | CVE-2023-28782 | WordPress Gravity Forms Plugin <= 2.7.3 is vulnerable to PHP Object Injection | 110,095 |
Feb, 2025 | CVE-2025-26763 | WordPress Slider, Gallery, and Carousel by MetaSlider – Image Slider, Video Slider Plugin <= 3.94.0 - PHP Object Injection vulnerability | 100,466 |
Dec, 2023 | CVE-2023-40555 | WordPress Flatsome Theme <= 3.17.5 is vulnerable to PHP Object Injection | 79,679 |
Aug, 2024 | CVE-2024-2694 | Betheme <= 27.5.6 - Authenticated (Contributor+) PHP Object Injection | 75,929 |
Apr, 2024 | CVE-2024-32600 | WordPress Master Slider plugin <= 3.9.5 - PHP Object Injection vulnerability | 66,343 |
Oct, 2023 | CVE-2023-3154 | NextGEN Gallery < 3.39 - Admin+ PHAR Deserialization | 44,160 |
Mar, 2025 | CVE-2025-30773 | WordPress TranslatePress <= 2.9.6 - PHP Object Injection Vulnerability | 35,989 |
Apr, 2025 | CVE-2025-3439 | Everest Forms – Contact Form, Quiz, Survey, Newsletter & Payment Form Builder for WordPress <= 3.1.1 - Unauthenticated PHP Object Injection | 28,547 |
Mar, 2025 | CVE-2025-0912 | GiveWP – Donation Plugin and Fundraising Platform <= 3.19.4 - Unauthenticated PHP Object Injection | 19,556 |
Jan, 2025 | CVE-2025-22777 | WordPress GiveWP Plugin <= 3.19.3 - PHP Object Injection vulnerability | 17,284 |
Domain | Country | Rank | Contacts |
---|---|---|---|
********.****.com | ![]() | *** | |
**********.com | ![]() | *** | |
*****.com | ![]() | *** | |
********.com | ![]() | *,*** | |
*******.com | ![]() | *,*** | |
***************.eu | ![]() | *,*** | |
****.******.jp | ![]() | *,*** | |
**********.com | ![]() | *,*** | |
**********.com | ![]() | *,*** | |
***.int | ![]() | *,*** |