WWordPress Vulnerability Database Community Security Advisory StoreEngine File Upload Flaw(CVE20259216)September 17, 2025 WordPress StoreEngine plugin <= 1.5.0 - Authenticated (Subscriber+) Arbitrary File Upload vulnerability
WWordPress Vulnerability Database Hong Kong Security Alert StoreEngine Download Vulnerability(CVE20259215)September 17, 2025 WordPress StoreEngine – Powerful WordPress eCommerce Plugin for Payments, Memberships, Affiliates, Sales & More plugin <= 1.5.0 - Authenticated (Subscriber+) Arbitrary File Download vulnerability
WWordPress Vulnerability Database Community Alert WordPress Plugin Directory Deletion(CVE202510188)September 17, 2025 WordPress The Hack Repair Guy's Plugin Archiver plugin <= 2.0.4 - Cross-Site Request Forgery to Arbitrary Directory Deletion in /wp-content vulnerability
WWordPress Vulnerability Database Community Security Alert Productive Style Plugin XSS(CVE20258394)September 16, 2025 WordPress Productive Style plugin <= 1.1.23 - Authenticated (Contributor+) Stored Cross-Site Scripting via display_productive_breadcrumb Shortcode vulnerability
WWordPress Vulnerability Database Security Alert for Events Calendar Data Exposure(CVE20259808)September 16, 2025 WordPress The Events Calendar plugin <= 6.15.2 - Missing Authorization to Unauthenticated Password-Protected Information Disclosure vulnerability
WWordPress Vulnerability Database Community Advisory Mailgun Plugin Data Exposure(CVE202559003)September 14, 2025 WordPress WP Mailgun SMTP Plugin <= 1.0.7 - Sensitive Data Exposure Vulnerability
WWordPress Vulnerability Database Road Fighter Theme Sensitive Data Exposure Alert(CVE202559003)September 14, 2025 WordPress Road Fighter Theme <= 1.3.5 - Sensitive Data Exposure Vulnerability
WWordPress Vulnerability Database Security Advisory Cloriato Lite Data Exposure(CVE202559003)September 14, 2025 WordPress Cloriato Lite Theme <= 1.7.2 - Sensitive Data Exposure Vulnerability
WWordPress Vulnerability Database HK Security Advisory Events Calendar SQL Injection(CVE20259807)September 11, 2025 WordPress The Events Calendar plugin <= 6.15.1 - Unauthenticated SQL Injection vulnerability
WWordPress Vulnerability Database Hong Kong Security Alert Enhanced BibliPlug XSS(CVE20259855)September 11, 2025 WordPress Enhanced BibliPlug plugin <= 1.3.8 - Authenticated (Contirbutor+) Stored Cross-Site Scripting vulnerability