WP Security

Browsing Category

WordPress Vulnerability Database

263 posts
WWordPress Vulnerability Database

Enhancing WordPress Security Against Countdown Exploits(CVE202575498)

  • August 6, 2025
WordPress Exclusive Addons for Elementor plugin <= 2.7.9.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown vulnerability
WWordPress Vulnerability Database

Critical Vulnerability in WooCommerce Multiple File Upload(CVE20254403)

  • August 6, 2025
WordPress Drag and Drop Multiple File Upload for WooCommerce plugin <= 1.1.6 - Unauthenticated Arbitrary File Upload via upload Function vulnerability
WWordPress Vulnerability Database

WordPress Booking Ultra Pro Plugin <1.1.4 - Cross-Site Scripting (XSS) vulnerability

  • May 7, 2023
The WordPress Booking Ultra Pro Plugin (v1.1.4 or earlier) has an unfixed high-severity XSS vulnerability, allowing malicious script injection. Other known vulnerabilities include CSRF issues.
WP Security
© 2025 WP-Security.org Disclaimer: WP-Security.org is an independent, non-profit NGO community committed to sharing WordPress security news and information. We are not affiliated with WordPress, its parent company, or any related entities. All trademarks are the property of their respective owners.

Review My Order

0

Subtotal

Taxes & shipping calculated at checkout

Checkout

 
0