10web
103 known vulnerabilities
Top Products
The 10Web Booster – Website speed optimization, Cache & Page Speed optimizer plugin for WordPress is vulnerable to arbit
The Photo Gallery by 10Web WordPress plugin before 1.8.29 does not sanitise and escape some of its settings, which coul
The Form Maker by 10Web WordPress plugin before 1.15.33 does not sanitise and escape some of its settings, which could
The Form Maker by 10Web WordPress plugin before 1.15.32 does not sanitise and escape some of its settings, which could
The Photo Gallery by 10Web WordPress plugin before 1.8.34 does not sanitised and escaped comment added on images by una
The Slider by 10Web WordPress plugin before 1.2.62 does not sanitise and escape some of its settings, which could allow
The Slider by 10Web WordPress plugin before 1.2.62 does not sanitise and escape some of its settings, which could allow
The Form Maker by 10Web WordPress plugin before 1.15.30 does not sanitise and escape some of its settings, which could
The Photo Gallery by 10Web WordPress plugin before 1.8.33 does not sanitise and escape some of its settings, which coul
The Form Maker by 10Web WordPress plugin before 1.15.30 does not sanitise and escape some of its settings, which could
The Form Maker by 10Web WordPress plugin before 1.15.33 does not sanitise and escape some of its settings, which could
The Form Maker by 10Web WordPress plugin before 1.15.31 does not sanitise and escape some of its settings, which could
Missing Authorization vulnerability in 10Web 10WebAnalytics wd-google-analytics allows Exploiting Incorrectly Configured
Missing Authorization vulnerability in 10Web 10Web Map Builder for Google Maps allows Exploiting Incorrectly Configured
Missing Authorization vulnerability in Photo Gallery Team Photo Gallery by 10Web allows Exploiting Incorrectly Configure
The Photo Gallery by 10Web WordPress plugin before 1.8.31 does not sanitise and escape some of its settings, which coul
The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Reflect
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scrip
The WPS Telegram Chat plugin for WordPress is vulnerable to authorization bypass due to a missing capability check when
The WPS Telegram Chat plugin for WordPress is vulnerable to unauthorized modification of data and loss of data due to a
The 10Web Social Post Feed plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_qu
The Photo Gallery by 10Web WordPress plugin before 1.8.28 does not properly sanitise and escape some of its Gallery set
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Photo Galler
The Slider by 10Web WordPress plugin before 1.2.59 does not sanitise and escape some of its settings, which could allow
The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Stored
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in 10Web Form
The Slider by 10Web – Responsive Image Slider plugin for WordPress is vulnerable to time-based SQL Injection via the 'id
The Slider by 10Web WordPress plugin before 1.2.57 does not sanitise and escape its Slider Title, which could allow hig
The SpiderContacts WordPress plugin through 1.1.7 does not sanitise and escape a parameter before outputting it back in
The Slider by 10Web WordPress plugin before 1.2.56 does not sanitise and escape some of its Slide options, which could
The Form Maker by 10Web WordPress plugin before 1.15.26 does not sanitise and escape some of its settings, which could
Missing Authorization vulnerability in Photo Gallery Team Photo Gallery by 10Web.This issue affects Photo Gallery by 10W
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Path Traversal in all v
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scrip
Improper Restriction of Excessive Authentication Attempts vulnerability in 10Web Form Builder Team Form Maker by 10Web a
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Form Builder
Missing Authorization vulnerability in Photo Gallery Team Photo Gallery by 10Web.This issue affects Photo Gallery by 10W
The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Stored
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Photo Gallery Team
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Slider by 10
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 10Web Form Builder
The Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder plugin for WordPress is vulnerable to Sensiti
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scrip
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in 10Web 10Web Map Bu
The image upload component allows SVG files and the regular expression used to remove script tags can be bypassed by usi
The current_url parameter of the AJAX call to the GalleryBox action of admin-ajax.php is vulnerable to reflected Cross S
The thumb_url parameter of the AJAX call to the editimage_bwg action of admin-ajax.php is vulnerable to reflected Cross
The image_url parameter of the AJAX call to the editimage_bwg action of admin-ajax.php is vulnerable to reflected Cross
The image_id parameter of the AJAX call to the editimage_bwg action of admin-ajax.php is vulnerable to reflected Cross S
The Photo Gallery by 10Web – Mobile-Friendly Image Gallery plugin for WordPress is vulnerable to Directory Traversal in
Frequently Asked Questions
How many CVEs affect 10web?
10web has 103 CVE records in our database, including 11 critical and 15 high severity vulnerabilities.
What are the most severe 10web vulnerabilities?
10web has 11 critical severity (CVSS 9.0+) and 15 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for 10web vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in 10web products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect 10web Vulnerabilities
CyberStrike scans your infrastructure for 10web vulnerabilities and provides real-time remediation guidance.
Get Started