WBase de Datos de Vulnerabilidades de WordPress Alerta de seguridad de la comunidad Spotlight de empleados de WordPress XSS(CVE202558915)septiembre 23, 2025 Plugin Spotlight de empleados de WordPress <= 5.1.0 - Vulnerabilidad de Cross Site Scripting (XSS)
WBase de Datos de Vulnerabilidades de WordPress Community Security Alert osTicket Bridge CSRF XSS(CVE20259882)septiembre 20, 2025 WordPress osTicket WP Bridge plugin <= 1.9.2 - Cross-Site Request Forgery to Stored Cross-Site Scripting vulnerability
WBase de Datos de Vulnerabilidades de WordPress Community Security Advisory StoreEngine File Upload Flaw(CVE20259216)septiembre 17, 2025 WordPress StoreEngine plugin <= 1.5.0 - Authenticated (Subscriber+) Arbitrary File Upload vulnerability
WBase de Datos de Vulnerabilidades de WordPress Hong Kong Security Alert StoreEngine Download Vulnerability(CVE20259215)septiembre 17, 2025 WordPress StoreEngine – Powerful WordPress eCommerce Plugin for Payments, Memberships, Affiliates, Sales & More plugin <= 1.5.0 - Authenticated (Subscriber+) Arbitrary File Download vulnerability
WBase de Datos de Vulnerabilidades de WordPress Community Alert WordPress Plugin Directory Deletion(CVE202510188)septiembre 17, 2025 WordPress The Hack Repair Guy's Plugin Archiver plugin <= 2.0.4 - Cross-Site Request Forgery to Arbitrary Directory Deletion in /wp-content vulnerability
WBase de Datos de Vulnerabilidades de WordPress Community Security Alert Productive Style Plugin XSS(CVE20258394)septiembre 16, 2025 WordPress Productive Style plugin <= 1.1.23 - Authenticated (Contributor+) Stored Cross-Site Scripting via display_productive_breadcrumb Shortcode vulnerability
WBase de Datos de Vulnerabilidades de WordPress Security Alert for Events Calendar Data Exposure(CVE20259808)septiembre 16, 2025 WordPress The Events Calendar plugin <= 6.15.2 - Missing Authorization to Unauthenticated Password-Protected Information Disclosure vulnerability
WBase de Datos de Vulnerabilidades de WordPress Community Advisory Mailgun Plugin Data Exposure(CVE202559003)septiembre 14, 2025 WordPress WP Mailgun SMTP Plugin <= 1.0.7 - Sensitive Data Exposure Vulnerability
WBase de Datos de Vulnerabilidades de WordPress Road Fighter Theme Sensitive Data Exposure Alert(CVE202559003)septiembre 14, 2025 WordPress Road Fighter Theme <= 1.3.5 - Sensitive Data Exposure Vulnerability
WBase de Datos de Vulnerabilidades de WordPress Aviso de seguridad Cloriato Lite Exposición de datos(CVE202559003)septiembre 14, 2025 WordPress Cloriato Lite Theme <= 1.7.2 - Vulnerabilidad de Exposición de Datos Sensibles