WBase de Datos de Vulnerabilidades de WordPress Media Author Plugin Broken Access Control Advisory(CVE202558841)septiembre 5, 2025 WordPress Media Author Plugin <= 1.0.4 - Broken Access Control Vulnerability
WBase de Datos de Vulnerabilidades de WordPress Atec Debug Plugin Administrator File Deletion Risk(CVE20259518)septiembre 3, 2025 WordPress atec Debug plugin <= 1.2.22 - Authenticated (Administrator+) Arbitrary File Deletion vulnerability
WBase de Datos de Vulnerabilidades de WordPress Hong Kong Security Advisory Make Connector Vulnerability(CVE20256085)septiembre 3, 2025 WordPress Make Connector plugin <= 1.5.10 - Authenticated (Administrator+) Arbitrary File Upload vulnerability
WBase de Datos de Vulnerabilidades de WordPress Hong Kong Security Alert Skyword Stored XSS(CVE202411907)agosto 30, 2025 WordPress Skyword API Plugin plugin <= 2.5.2 - Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
WBase de Datos de Vulnerabilidades de WordPress Community Alert TablePress Stored XSS Vulnerability(CVE20259500)agosto 30, 2025 WordPress TablePress plugin <= 3.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via shortcode_debug Parameter vulnerability
WBase de Datos de Vulnerabilidades de WordPress Hong Kong Security Advisory Ocean Extra XSS(CVE20259499)agosto 30, 2025 WordPress Ocean Extra plugin <= 2.4.9 - Authenticated (Contributor+) Stored Cross-Site Scripting via oceanwp_library Shortcode vulnerability
WBase de Datos de Vulnerabilidades de WordPress Security Advisory Booster for WooCommerce File Upload(CVE202413342)agosto 30, 2025 WordPress Booster for WooCommerce plugin <= 7.2.4 - Unauthenticated Double Extension Arbitrary File Upload vulnerability
WBase de Datos de Vulnerabilidades de WordPress Aviso de seguridad de Hong Kong Vulnerabilidad de Slider Revolution (CVE20259217)agosto 29, 2025 Plugin Slider Revolution de WordPress <= 6.7.36 - Lectura de archivos arbitrarios autenticada (Contribuyente+) a través de la vulnerabilidad 'used_svg' y 'used_images'
WBase de Datos de Vulnerabilidades de WordPress Hong Kong Security Alert iATS SQL Injection(CVE20259441)agosto 29, 2025 WordPress iATS Online Forms plugin <= 1.2 - Authenticated (Contributor+) SQL Injection via order Parameter vulnerability
WBase de Datos de Vulnerabilidades de WordPress Alerta de Seguridad Vulnerabilidad CSRF de Publicaciones Relacionadas Lite (CVE20259618)agosto 29, 2025 Plugin WordPress Related Posts Lite <= 1.12 - Vulnerabilidad de Cross-Site Request Forgery