CVE Tools

Wpdatatables

4 CVEs tracked since 2021. Since Apr 2021, none of them reached CISA KEV.

Wpdatatables CVEs per month

Apr 2021 to Apr 2021. Point at a month, or focus the strip and use the arrow keys.
Wpdatatables CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2021-0440

Products

The products that kept showing up in Wpdatatables's monthly top three, with their CVEs summed over those months.

  1. Wpdatatables – Tables & Table Charts41 month

Latest CVEs

The 14 most recently published vulnerabilities affecting Wpdatatables.

  1. CVE-2026-65509WordPress wpDataTables plugin <= 7.5.1 - Cross Site Scripting (XSS) vulnerability7.1
  2. CVE-2026-54825WordPress wpDataTables plugin <= 7.4 - SQL Injection vulnerability9.3
  3. CVE-2026-5721wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin <= 6.5.0.4 - Unauthenticated Stored Cross-Site Scripting via CSV/Excel Data Import4.7
  4. CVE-2026-28039WordPress wpDataTables plugin <= 6.5.0.1 - Local File Inclusion vulnerability7.5
  5. CVE-2024-3820wpDataTables - Tables & Table Charts (Premium) <= 6.3.1 - Unauthenticated SQL Injection10.0
  6. CVE-2024-3821wpDataTables - Tables & Table Charts (Premium) <= 6.3.2 - Missing Authorization to DataTable Access & Modification7.3
  7. CVE-2024-4895wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin <= 3.4.2.12 - Unauthenticated Stored Cross-Site Scripting via CSV Import4.7
  8. CVE-2024-0591wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin <= 3.4.2.2 - Reflected Cross-Site Scripting.6.1
  9. CVE-2021-24200wpDataTables < 3.4.2 - Blind SQL Injection via length Parameter6.5
  10. CVE-2021-24199wpDataTables < 3.4.2 - Blind SQL Injection via start Parameter6.5
  11. CVE-2021-24198wpDataTables < 3.4.2 - Improper Access Control leading to Table Data Deletion8.1
  12. CVE-2021-24197wpDataTables < 3.4.2 - Improper Access Control leading to Table Permission Takeover8.1
  13. CVE-2021-26754wpDataTables before 3.4.1 mishandles order direction for server-side tables, aka admin-ajax.php?action=get_wdtable order[0][dir] SQL injection.9.8
  14. CVE-2014-9175SQL injection vulnerability in wpdatatables.php in the wpDataTables plugin 1.5.3 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the table_id parameter in a ...7.5

The record

Peak rank
#136 in Apr 2021
Busiest month shown
Apr 2021, 4 CVEs
Months with a KEV entry
0 since Apr 2021
Monthly snapshots
1 since 2021
Wpdatatables's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store