Wpdatatables
4 CVEs tracked since 2021. Since Apr 2021, none of them reached CISA KEV.
Wpdatatables CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2021-04 | 4 | 0 |
Products
The products that kept showing up in Wpdatatables's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 14 most recently published vulnerabilities affecting Wpdatatables.
- CVE-2026-65509WordPress wpDataTables plugin <= 7.5.1 - Cross Site Scripting (XSS) vulnerability7.1
- CVE-2026-54825WordPress wpDataTables plugin <= 7.4 - SQL Injection vulnerability9.3
- CVE-2026-5721wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin <= 6.5.0.4 - Unauthenticated Stored Cross-Site Scripting via CSV/Excel Data Import4.7
- CVE-2026-28039WordPress wpDataTables plugin <= 6.5.0.1 - Local File Inclusion vulnerability7.5
- CVE-2024-3820wpDataTables - Tables & Table Charts (Premium) <= 6.3.1 - Unauthenticated SQL Injection10.0
- CVE-2024-3821wpDataTables - Tables & Table Charts (Premium) <= 6.3.2 - Missing Authorization to DataTable Access & Modification7.3
- CVE-2024-4895wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin <= 3.4.2.12 - Unauthenticated Stored Cross-Site Scripting via CSV Import4.7
- CVE-2024-0591wpDataTables – WordPress Data Table, Dynamic Tables & Table Charts Plugin <= 3.4.2.2 - Reflected Cross-Site Scripting.6.1
- CVE-2021-24200wpDataTables < 3.4.2 - Blind SQL Injection via length Parameter6.5
- CVE-2021-24199wpDataTables < 3.4.2 - Blind SQL Injection via start Parameter6.5
- CVE-2021-24198wpDataTables < 3.4.2 - Improper Access Control leading to Table Data Deletion8.1
- CVE-2021-24197wpDataTables < 3.4.2 - Improper Access Control leading to Table Permission Takeover8.1
- CVE-2021-26754wpDataTables before 3.4.1 mishandles order direction for server-side tables, aka admin-ajax.php?action=get_wdtable order[0][dir] SQL injection.9.8
- CVE-2014-9175SQL injection vulnerability in wpdatatables.php in the wpDataTables plugin 1.5.3 and earlier for WordPress allows remote attackers to execute arbitrary SQL commands via the table_id parameter in a ...7.5
The record
- Peak rank
- #136 in Apr 2021
- Busiest month shown
- Apr 2021, 4 CVEs
- Months with a KEV entry
- 0 since Apr 2021
- Monthly snapshots
- 1 since 2021