WWordPress Vulnerability Database HK Security Advisory Events Calendar SQL Injection(CVE20259807)September 11, 2025 WordPress The Events Calendar plugin <= 6.15.1 - Unauthenticated SQL Injection vulnerability
WWordPress Vulnerability Database Hong Kong Security Alert Enhanced BibliPlug XSS(CVE20259855)September 11, 2025 WordPress Enhanced BibliPlug plugin <= 1.3.8 - Authenticated (Contirbutor+) Stored Cross-Site Scripting vulnerability
WWordPress Vulnerability Database HK Security Advisory LH Signing Plugin CSRF(CVE20259633)September 11, 2025 WordPress LH Signing plugin <= 2.83 - Cross-Site Request Forgery vulnerability
WWordPress Vulnerability Database Stored XSS in AzureCurve BBCode Plugin(CVE20258398)September 11, 2025 WordPress azurecurve BBCode plugin <= 2.0.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via url Shortcode vulnerability
WWordPress Vulnerability Database Hong Kong Security Alert ThemeLoom Widgets XSS(CVE20259861)September 11, 2025 WordPress ThemeLoom Widgets plugin <= 1.8.5 - Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
WWordPress Vulnerability Database HK Security Advisory Certifica Stored XSS(CVE20258316)September 11, 2025 WordPress Certifica WP plugin <= 3.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via evento Parameter vulnerability
WWordPress Vulnerability Database Hong Kong Security Alert Elementor Addons XSS(CVE20258215)September 11, 2025 WordPress Responsive Addons for Elementor plugin <= 1.7.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets vulnerability
WWordPress Vulnerability Database Hong Kong Security Advisory CatFolders SQL Injection(CVE20259776)September 11, 2025 WordPress CatFolders plugin <= 2.5.2 - Authenticated (Author+) SQL Injection via CSV Import vulnerability
WWordPress Vulnerability Database HK Security NGO Alert PagBank PagSeguro SQL(CVE202510142)September 10, 2025 WordPress PagBank / PagSeguro Connect plugin <= 4.44.3 - Authenticated (Shop Manager+) SQL Injection vulnerability
WWordPress Vulnerability Database Community Security Advisory PeachPay SQL Injection(CVE20259463)September 10, 2025 WordPress PeachPay Payments plugin <= 1.117.5 - Authenticated (Contributor+) SQL Injection via order_by Parameter vulnerability