WP Security

Browsing Category

WordPress Vulnerability Database

249 posts
WWordPress Vulnerability Database

Community Alert Hub Theme Authorization Weakness(CVE20250951)

  • August 28, 2025
WordPress Hub theme <= 5.0.7 - Missing Authorization to Authenticated (Subscriber+) All Plugins Deactivated vulnerability
WWordPress Vulnerability Database

Urgent Advisory Managefy Plugin Path Traversal(CVE20259345)

  • August 28, 2025
WordPress File Manager, Code Editor, and Backup by Managefy plugin <= 1.4.8 - Authenticated (Admin+) Path Traversal to Arbitrary File Download vulnerability
WWordPress Vulnerability Database

Hong Kong Security Alert StopBadBots Bypass(CVE20259376)

  • August 28, 2025
WordPress StopBadBots plugin <= 11.58 - Insufficient Authorization to Unauthenticated Blocklist Bypass vulnerability
WWordPress Vulnerability Database

Hong Kong Security Alert ULike Pro Risk(CVE20249648)

  • August 28, 2025
WordPress WP ULike Pro plugin <= 1.9.3 - Unauthenticated Limited Arbitrary File Upload vulnerability
WWordPress Vulnerability Database

Hong Kong Security Advisory Contributor Stored XSS(CVE20259346)

  • August 28, 2025
WordPress Booking Calendar plugin <= 10.14.1 - Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
WWordPress Vulnerability Database

Community Advisory Pronamic Google Maps XSS(CVE20259352)

  • August 27, 2025
WordPress Pronamic Google Maps plugin <= 2.4.1 - Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
WWordPress Vulnerability Database

Hong Kong Security Advisory UsersWP Stored XSS(CVE20259344)

  • August 27, 2025
WordPress UsersWP plugin <= 1.2.42 - Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
WWordPress Vulnerability Database

Hong Kong Security Alert Podlove Plugin Redirect(CVE202558204)

  • August 27, 2025
WordPress Podlove Podcast Publisher Plugin <= 4.2.5 - Open Redirection Vulnerability
WWordPress Vulnerability Database

Public Advisory Bold Page Builder XSS Vulnerability(CVE202558194)

  • August 27, 2025
WordPress Bold Page Builder Plugin <= 5.4.3 - Cross Site Scripting (XSS) Vulnerability
WWordPress Vulnerability Database

Epeken All Kurir Plugin XSS Security Notice(CVE202558212)

  • August 27, 2025
WordPress Epeken All Kurir Plugin <= 2.0.1 - Cross Site Scripting (XSS) Vulnerability
WP Security
© 2025 WP-Security.org Disclaimer: WP-Security.org is an independent, non-profit NGO community committed to sharing WordPress security news and information. We are not affiliated with WordPress, its parent company, or any related entities. All trademarks are the property of their respective owners.

Review My Order

0

Subtotal

Taxes & shipping calculated at checkout

Checkout

 
0