WWordPress Vulnerability Database HK NGO Alerts WordPress Earnware Connect XSS(CVE20257651)August 16, 2025 WordPress Earnware Connect plugin <= 1.0.73 - Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
WWordPress Vulnerability Database WordPress User Meta CSRF Exposes Stored XSS(CVE20257688)August 16, 2025 WordPress Add User Meta plugin <= 1.0.1 - Cross-Site Request Forgery to Stored Cross-Site Scripting vulnerability
WWordPress Vulnerability Database Hong Kong Security Alert WordPress LatestCheckins Flaw(CVE20257683)August 16, 2025 WordPress LatestCheckins plugin <= 1 - Cross-Site Request Forgery to Stored Cross-Site Scripting vulnerability
WWordPress Vulnerability Database HK Security NGO Alerts Unauthenticated File Upload(CVE20256679)August 15, 2025 WordPress Bit Form – Contact Form plugin <= 2.20.3 - Unauthenticated Arbitrary File Upload vulnerability
WWordPress Vulnerability Database Hong Kong Security Alerts WordPress Access Flaw(CVE202549895)August 15, 2025 WordPress School Management Plugin <= 93.2.0 - Broken Access Control Vulnerability
WWordPress Vulnerability Database HK Security WordPress Video Plugin Access Vulnerability(CVE202549432)August 15, 2025 WordPress Ultimate Video Player Plugin <= 10.1 - Broken Access Control Vulnerability
WWordPress Vulnerability Database Hong Kong Security Alerts WordPress School IDOR(CVE202549896)August 15, 2025 WordPress School Management Plugin <= 93.1.0 - Insecure Direct Object References (IDOR) Vulnerability
WWordPress Vulnerability Database (CVE202549898)August 15, 2025 WordPress School Management Plugin <= 93.2.0 - SQL Injection Vulnerability
WWordPress Vulnerability Database Hong Kong NGO Alerts WordPress Pricing Vulnerability(CVE20257662)August 15, 2025 Plugin Name Gestion de tarifs Type of Vulnerability Authenticated SQL Injection CVE Number CVE-2025-7662 Urgency Low CVE Publish…
WWordPress Vulnerability Database Hong Kong NGO reports Radius Blocks XSS(CVE20255844)August 15, 2025 WordPress Radius Blocks plugin <= 2.2.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via subHeadingTagName Parameter vulnerability