WWordPress Vulnerability Database Community Alert Rehub Theme Shortcode Vulnerability(CVE20257366)September 6, 2025 WordPress Rehub theme <= 19.9.7 - Unauthenticated Arbitrary Shortcode Execution via re_filterpost vulnerability
WWordPress Vulnerability Database Security Advisory Smart Table Builder Stored XSS(CVE20259126)September 6, 2025 WordPress Smart Table Builder plugin <= 1.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via id Parameter vulnerability
WWordPress Vulnerability Database AdForest Theme Admin Access Bypass Advisory(CVE20258359)September 6, 2025 WordPress AdForest theme <= 6.0.9 - Authentication Bypass to Admin vulnerability
WWordPress Vulnerability Database Community Security Advisory Easy Social Feed XSS(CVE20256067)September 6, 2025 WordPress Easy Social Feed plugin <= 6.6.7 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting vulnerability
WWordPress Vulnerability Database HK Security Alert Element Kit XSS(CVE20258360)September 6, 2025 WordPress LA-Studio Element Kit for Elementor plugin <= 1.5.5.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets vulnerability
WWordPress Vulnerability Database Security Advisory Simple Gallery Plugin SQL Injection(CVE202558881)September 5, 2025 WordPress New Simple Gallery Plugin <= 8.0 - SQL Injection Vulnerability
WWordPress Vulnerability Database Community Alert eDS Responsive Menu Plugin Vulnerability(CVE202558839)September 5, 2025 WordPress eDS Responsive Menu Plugin <= 1.2 - PHP Object Injection Vulnerability
WWordPress Vulnerability Database Media Author Plugin Broken Access Control Advisory(CVE202558841)September 5, 2025 WordPress Media Author Plugin <= 1.0.4 - Broken Access Control Vulnerability
WWordPress Vulnerability Database Atec Debug Plugin Administrator File Deletion Risk(CVE20259518)September 3, 2025 WordPress atec Debug plugin <= 1.2.22 - Authenticated (Administrator+) Arbitrary File Deletion vulnerability
WWordPress Vulnerability Database Hong Kong Security Advisory Make Connector Vulnerability(CVE20256085)September 3, 2025 WordPress Make Connector plugin <= 1.5.10 - Authenticated (Administrator+) Arbitrary File Upload vulnerability